Anonymous
2026-09-01 10:30:03
(2 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 10:02:40
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.138.12.13 (13.12.138.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.138.12.13 (13.12.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:02:33.641765 2026] [security2:error] [pid 14799:tid 14799] [client 34.138.12.13:33984] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.gegkal.com"] [uri "/app/.git/config"] [unique_id "apaiueke1Z1FLq4PANgfmgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 06:18:48
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.138.12.13 (13.12.138.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.138.12.13 (13.12.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:18:42.112831 2026] [security2:error] [pid 28902:tid 28902] [client 34.138.12.13:59888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tttns.com"] [uri "/www/.git/config"] [unique_id "apZuQsrU7YVjNYk4-Fc-EQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
iGroupware
2026-09-01 03:08:55
(9 hours ago)
{"req/ip"=>{:discriminator=>"34.138.12.13", :count=>501, :period=>180, :limit=>500, :epoch_time=>178 ...
show more
{"req/ip"=>{:discriminator=>"34.138.12.13", :count=>501, :period=>180, :limit=>500, :epoch_time=>1788232135}}
show less
Web App Attack
๐บ๐ธ
mnsf
2026-09-01 03:06:09
(10 hours ago)
Scanning/Probing (61)
Request Overload (541)
Brute-Force
Web App Attack
๐ฉ๐ช
paissangroup
2026-09-01 03:02:26
(10 hours ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
Little Iguana
2026-09-01 02:43:18
(10 hours ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
๐ณ๐ฑ
e.fierstra
2026-08-31 16:08:19
(20 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ญ๐บ
bcsaba
2026-08-29 23:07:00
(2 days ago)
No backend here:
34.138.12.13 - - [30/Aug/2026:01:06:57 +0200] "GET /backend/.git/config HTTP/1.1" 4 ...
show more
No backend here:
34.138.12.13 - - [30/Aug/2026:01:06:57 +0200] "GET /backend/.git/config HTTP/1.1" 400 230 "-" "crusader-worker/1.0"
show less
Web App Attack
๐ณ๐ฑ
Cloud86 B.V.
2026-08-28 11:39:02
(4 days ago)
categories: DDoS Attack
DDoS Attack
๐บ๐ธ
lavnet.net
2026-08-28 00:46:44
(4 days ago)
34.138.12.13 - - [28/Aug/2026:00:46:43 +0000] "GET /src/.git/config HTTP/1.1" 404 4352 "-" "crusader ...
show more
34.138.12.13 - - [28/Aug/2026:00:46:43 +0000] "GET /src/.git/config HTTP/1.1" 404 4352 "-" "crusader-worker/1.0"
34.138.12.13 - - [28/Aug/2026:00:46:43 +0000] "GET /app/.git/config HTTP/1.1" 404 4352 "-" "crusader-worker/1.0"
34.138.12.13 - - [28/Aug/2026:00:46:43 +0000] "GET /.git/config HTTP/1.1" 404 4352 "-" "crusader-worker/1.0"
34.138.12.13 - - [28/Aug/2026:00:46:43 +0000] "GET /backend/.git/config HTTP/1.1" 404 4352 "-" "crusader-worker/1.0"
34.138.12.13 - - [28/Aug/2026:00:46:43 +0000] "GET /www/.git/config HTTP/1.1" 404 4353 "-" "crusader-worker/1.0"
34.138.12.13 - - [28/Aug/2026:00:46:43 +0000] "GET /api/.git/config HTTP/1.1" 404 4353 "-" "crusader-worker/1.0"
...
show less
Brute-Force
๐บ๐ธ
kosada.com
2026-08-27 19:00:18
(4 days ago)
Web vulnerability probing: /var/www/.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 14:31:42
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.138.12.13 (13.12.138.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.138.12.13 (13.12.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 10:31:35.855512 2026] [security2:error] [pid 7012:tid 7012] [client 34.138.12.13:58718] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kadinisi.org.mavikalem.org"] [uri "/.git/config"] [unique_id "apBKRyZ7EX9lZdwj1snvjgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-27 13:00:19
(5 days ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐ฎ๐น
mediarama.com
2026-08-27 12:32:21
(5 days ago)
Banned by Fail2Ban
Web App Attack