๐ช๐ธ
el-brujo
2026-10-11 10:59:17
(4 minutes ago)
Cloudflare WAF: Request Path: /.ssh/id_dsa Request Query: Host: status.elhacker.net userAgent: Mozi ...
show more
Cloudflare WAF: Request Path: /.ssh/id_dsa Request Query: Host: status.elhacker.net userAgent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Perplexity-User/1.0; +https://perplexity.ai/perplexity-user) Action: block Source: firewallCustom ASN Description: Google LLC Country: US Method: GET Timestamp: 2026-10-11T10:59:17Z ruleId: 6b2d48d0415e4adb9f099d85f54d1de6. Report generated by Cloudflare-WAF-to-AbuseIPDB.
show less
Hacking
SQL Injection
Web App Attack
๐ฉ๐ช
updown.io
2026-10-11 10:58:21
(5 minutes ago)
{"level":"info","ts":1791716300.7068958,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1791716300.7068958,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.138.50.68","remote_port":"43242","client_ip":"34.138.50.68","proto":"HTTP/2.0","method":"POST","host":"status.bsi-mt.net","uri":"/graphql","headers":{"Sec-Ch-Ua-Platform":["\"Android\""],"Sec-Ch-Ua":["\"Chromium\";v=\"152\", \"Not?A_Brand\";v=\"24\", \"Google Chrome\";v=\"152\""],"Origin":["https://status.bsi-mt.net"],"Priority":["u=1, i"],"Sec-Ch-Ua-Mobile":["?1"],"Sec-Fetch-Dest":["empty"],"Accept-Encoding":["gzip, deflate, br, zstd"],"Content-Length":["86"],"Sec-Fetch-Site":["same-origin"],"Accept":["*/*"],"Sec-Fetch-Mode":["cors"],"Content-Type":["application/json"],"Accept-Language":["en-US,en;q=0.9"],"Referer":["https://status.bsi-mt.net"],"User-Agent":["Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"h2","server_name":"status.b
...
show less
DDoS Attack
Web App Attack
๐ช๐ธ
el-brujo
2026-10-11 04:42:01
(6 hours ago)
Cloudflare WAF: Request Path: /.env.development::$DATA Request Query: ?raw Host: metrics.elhacker.ne ...
show more
Cloudflare WAF: Request Path: /.env.development::$DATA Request Query: ?raw Host: metrics.elhacker.net userAgent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Action: block Source: firewallCustom ASN Description: Google LLC Country: US Method: GET Timestamp: 2026-10-11T04:42:01Z ruleId: 6b2d48d0415e4adb9f099d85f54d1de6. Report generated by Cloudflare-WAF-to-AbuseIPDB.
show less
Hacking
SQL Injection
Web App Attack
๐ง๐ช
taivas.nl
2026-10-11 04:32:55
(6 hours ago)
Many_bad_calls
Web App Attack
๐ฉ๐ช
Marco711
2026-10-11 03:54:28
(7 hours ago)
port/URL scanning
Port Scan
Web App Attack
๐ช๐ธ
el-brujo
2026-10-11 03:48:04
(7 hours ago)
11/Oct/2026:05:48:04.096332 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
11/Oct/2026:05:48:04.096332 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 34.138.50.68] ModSecurity: Warning. Pattern match "(?i)(?:\\\\\\\\x5c|(?:%(?:c(?:0%(?:[2aq]f|5c|9v)|1%(?:[19p]c|8s|af))|2(?:5(?:c(?:0%25af|1%259c)|2f|5c)|%46|f)|(?:(?:f(?:8%8)?0%8|e)0%80%a|bg%q)f|%3(?:2(?:%(?:%6|4)6|F)|5%%63)|u(?:221[56]|002f|EFC8|F025)|1u|5c)|0x(?:2f|5c)|\\\\\\\\/))(?:%(?:(?:f(?:(?:c%80|8)%8)?0%8 ..." at REQUEST_URI_RAW. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "48"] [id "930100"] [msg "Path Traversal Attack (/../)"] [data "Matched Data: /../ found within REQUEST_URI_RAW: /@fs/../.env?raw??"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [hostname "mail.elhacker.net"] [uri "/.env"] [unique_id "assG9CE0sI6Xme1OChgufAAHhFk"]
...
show less
Hacking
Web App Attack
๐ฉ๐ช
itsolon
2026-10-11 00:27:52
(10 hours ago)
[11/Oct/2026:02:27:52 +0200] 179167847288.364217 34.138.50.68 0 217.154.7.177 443
[11/Oct/2026:02:27 ...
show more
[11/Oct/2026:02:27:52 +0200] 179167847288.364217 34.138.50.68 0 217.154.7.177 443
[11/Oct/2026:02:27:52 +0200] 179167847290.992953 34.138.50.68 0 217.154.7.177 443
[11/Oct/2026:02:27:52 +0200] 179167847220.828454 34.138.50.68 0 217.154.7.177 443
[11/Oct/2026:02:27:52 +0200] 179167847265.111289 34.138.50.68 0 217.154.7.177 443
[11/Oct/2026:02:27:52 +0200] 179167847237.898516 34.138.50.68 0 217.154.7.177 443
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
Charlesiv
2026-10-11 00:10:12
(10 hours ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/2 (GET method)
Endpoint: /private/.env
Timestamp: 2026-10-10T23:45:11Z
Ray ID: a4897f511be67b19
UA: Mozilla/5.0 (compatible; Meta-WebIndexer/1.0; +https://developers.facebook.com/docs/sharing/webmasters/crawler)
show less
Bad Web Bot
๐ช๐ธ
el-brujo
2026-10-10 20:25:57
(14 hours ago)
Cloudflare WAF: Request Path: /@fs/app/.env Request Query: ?raw?? Host: chat.elhacker.net userAgent: ...
show more
Cloudflare WAF: Request Path: /@fs/app/.env Request Query: ?raw?? Host: chat.elhacker.net userAgent: Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/) Action: block Source: firewallCustom ASN Description: Google LLC Country: US Method: GET Timestamp: 2026-10-10T20:25:57Z ruleId: 6b2d48d0415e4adb9f099d85f54d1de6. Report generated by Cloudflare-WAF-to-AbuseIPDB.
show less
Hacking
SQL Injection
Web App Attack
๐ฎ๐น
VHosting
2026-10-10 20:25:06
(14 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ช๐ธ
robotstxt
2026-10-10 19:50:37
(15 hours ago)
34.138.50.68 - - [10/Oct/2026:19:49:36 +0000] "-" 400 193 "-" "-" "-" edge="34.138.50.68"
34.138.50. ...
show more
34.138.50.68 - - [10/Oct/2026:19:49:36 +0000] "-" 400 193 "-" "-" "-" edge="34.138.50.68"
34.138.50.68 - - [10/Oct/2026:19:49:36 +0000] "-" 400 193 "-" "-" "-" edge="34.138.50.68"
34.138.50.68 - - [10/Oct/2026:19:49:36 +0000] "-" 400 193 "-" "-" "-" edge="34.138.50.68"
34.138.50.68 - - [10/Oct/2026:19:49:36 +0000] "-" 400 193 "-" "-" "-" edge="34.138.50.68"
34.138.50.68 - - [10/Oct/2026:19:49:36 +0000] "-" 400 193 "-" "-" "-" edge="34.138.50.68"
...
show less
Web Spam
Web App Attack
๐ฎ๐ณ
Starburst SysOp Team
2026-10-10 19:20:16
(15 hours ago)
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encod ...
show more
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encoding/ /proxy/ /lock-token/ /content-range/ /if/ /x-http-method-override/ /x-http-method/ /x-method-override/ /x-middleware-subrequest/ /expect/" at TX:header_name_920450_x-middleware-subrequest. (920450-bom2-2)
show less
Bad Web Bot
๐บ๐ธ
interbiznw.com
2026-10-10 18:57:41
(16 hours ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
Charlesiv
2026-10-10 18:00:52
(17 hours ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
ASN: 396982 (Goog ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
ASN: 396982 (Google LLC)
Protocol: HTTP/2 (GET method)
Endpoint: /host.key
Timestamp: 2026-10-10T17:47:07Z
Ray ID: a48772cc7a015e54
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.0 Safari/605.1.15 (Applebot/0.1; +http://www.apple.com/go/applebot)
show less
Bad Web Bot
๐ฉ๐ช
raph
2026-10-10 17:39:26
(17 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack