πΊπΈ
kosada.com
2026-06-15 04:07:10
(1 day ago)
Web vulnerability probing: /backend/.git/config
Web App Attack
π§πͺ
cmbplf
2026-06-15 03:35:43
(1 day ago)
1.181 requests with url.path */.git/config
Brute-Force
Bad Web Bot
Anonymous
2026-06-15 02:55:05
(1 day ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1, GET /code/.git/config HTTP/1.1, G ...
show more
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1, GET /code/.git/config HTTP/1.1, GET /build/.git/config HTTP/1.1, GET /app/.git/config HTTP/1.1, GET /site/.git/config HTTP/1.1, GET /symfony/.git/config HTTP/1.1, GET /www/.git/config HTTP/1.1, GET /assets/.git/config HTTP/1.1, GET /portal/.git/config HTTP/1.1, GET /v3/.git/config HTTP/1.1
show less
Hacking
Web App Attack
π¨π¦
Dunham Support
2026-06-15 02:50:14
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.130.90.84 (CA/Canada/84.90.130.34.bc ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.130.90.84 (CA/Canada/84.90.130.34.bc.googleusercontent.com)
show less
SQL Injection
πΊπΈ
mnsf
2026-06-15 00:07:37
(1 day ago)
Abuse Detected (30)
Brute-Force
Web App Attack
π³π±
e.fierstra
2026-06-15 00:07:26
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-14 23:25:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.130.90.84 (84.90.130.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.130.90.84 (84.90.130.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:25:10.405089 2026] [security2:error] [pid 19304:tid 19320] [client 34.130.90.84:57046] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.cookmanufacturinggroup.com"] [uri "/v1/.git/config"] [unique_id "ai84VgmhlCfpTyhf9fSLXAAAAUg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³πΏ
Antinson
2026-06-14 22:27:29
(2 days ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
π³π±
Mangelot Hosting
2026-06-14 22:16:19
(2 days ago)
(modsecurity) srv101 ModSecurity 34.130.90.84 (CA/Canada/84.90.130.34.bc.googleusercontent.com): 10 ...
show more
(modsecurity) srv101 ModSecurity 34.130.90.84 (CA/Canada/84.90.130.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
Anonymous
2026-06-14 22:06:15
(2 days ago)
Trying to access config files
Web App Attack
π³π±
Savvii
2026-06-14 21:42:33
(2 days ago)
20 attempts against mh-misbehave-ban on ec102967
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-14 21:30:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.130.90.84 (84.90.130.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.130.90.84 (84.90.130.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 17:30:04.311600 2026] [security2:error] [pid 26415:tid 26415] [client 34.130.90.84:34310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.darkcodeverse.com.darkcodedesign.net"] [uri "/.git/config"] [unique_id "ai8dXGAvHv4iNb9Zkt4bsAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-14 21:08:32
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.130.90.84 (84.90.130.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.130.90.84 (84.90.130.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 17:08:25.381927 2026] [security2:error] [pid 21094:tid 21094] [client 34.130.90.84:51766] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "golf-4-good.com"] [uri "/app/.git/config"] [unique_id "ai8YSWZ4hHFqpvfLnJFdsQAAAEE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π¦
electronico
2026-06-14 20:56:55
(2 days ago)
34.130.90.84 - - [15/Jun/2026:07:56:54 +1100] "GET /www/.git/config HTTP/1.1" 404 5879 "-" "Mozilla/ ...
show more
34.130.90.84 - - [15/Jun/2026:07:56:54 +1100] "GET /www/.git/config HTTP/1.1" 404 5879 "-" "Mozilla/5.0 (Windows NT 6.2; WOW64; rv:39.0) Gecko/20100101 Firefox/39.0"
34.130.90.84 - - [15/Jun/2026:07:56:54 +1100] "GET /build/.git/config HTTP/1.1" 404 5879 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_4) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3626.121 Safari/537.36"
34.130.90.84 - - [15/Jun/2026:07:56:54 +1100] "GET /admin/.git/config HTTP/1.1" 404 5879 "-" "Mozilla/5.0 (Windows; U; ; en-NZ) AppleWebKit/527 (KHTML, like Gecko, Safari/419.3) Arora/0.8.0"
34.130.90.84 - - [15/Jun/2026:07:56:54 +1100] "GET /portal/.git/config HTTP/1.1" 404 5879 "-" "Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_6_6; en-us) AppleWebKit/533.20.25 (KHTML, like Gecko) Version/5.0.4 Safari/533.20.27"
34.130.90.84 - - [15/Jun/2026:07:56:54 +1100] "GET /dashboard/.git/config HTTP/1.1" 404 5879 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.108
...
show less
Brute-Force
Web App Attack
π³π±
Savvii
2026-06-14 14:49:54
(2 days ago)
20 attempts against mh-misbehave-ban on storm
Brute-Force
Bad Web Bot
Web App Attack