🇧🇾
lns.bz
2026-09-06 07:04:20
(2 hours ago)
Too many 404 requests [BY]
Web App Attack
🇳🇱
e.fierstra
2026-09-06 02:53:55
(6 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇳🇱
thedreamer.nl
2026-09-06 01:53:55
(7 hours ago)
34.14.165.232 - - [06/Sep/2026:03:52:17 +0200] "GET /public/.git/config HTTP/1.1" 499 0 "-" "crusade ...
show more
34.14.165.232 - - [06/Sep/2026:03:52:17 +0200] "GET /public/.git/config HTTP/1.1" 499 0 "-" "crusader-worker/1.0" "IN" "Mumbai" "19.07480" "72.88560"
34.14.165.232 - - [06/Sep/2026:03:52:17 +0200] "GET /var/www/.git/config HTTP/1.1" 499 0 "-" "crusader-worker/1.0" "IN" "Mumbai" "19.07480" "72.88560"
34.14.165.232 - - [06/Sep/2026:03:52:17 +0200] "GET /backend/.git/config HTTP/1.1" 499 0 "-" "crusader-worker/1.0" "IN" "Mumbai" "19.07480" "72.88560"
34.14.165.232 - - [06/Sep/2026:03:52:17 +0200] "GET /.git/config HTTP/1.1" 499 0 "-" "crusader-worker/1.0" "IN" "Mumbai" "19.07480" "72.88560"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
georgton.tech
2026-09-05 09:10:19
(23 hours ago)
34.14.165.232 - - [05/Sep/2026:06:10:19 -0300] "GET /.git/config HTTP/1.1" 400 264 "-" "crusader-wor ...
show more
34.14.165.232 - - [05/Sep/2026:06:10:19 -0300] "GET /.git/config HTTP/1.1" 400 264 "-" "crusader-worker/1.0"
34.14.165.232 - - [05/Sep/2026:06:10:19 -0300] "GET /src/.git/config HTTP/1.1" 400 264 "-" "crusader-worker/1.0"
34.14.165.232 - - [05/Sep/2026:06:10:19 -0300] "GET /app/.git/config HTTP/1.1" 400 264 "-" "crusader-worker/1.0"
...
show less
Bad Web Bot
Web App Attack
🇩🇪
Tsumugi Kotobuki
2026-09-05 09:03:23
(1 day ago)
Port Scan on Honeypot | Ports: 80/HTTP | Proto: TCP(1) | Flags: all SYN | TTL: 59 | Len: 60B | Win: ...
show more
Port Scan on Honeypot | Ports: 80/HTTP | Proto: TCP(1) | Flags: all SYN | TTL: 59 | Len: 60B | Win: 65320(1) | rDNS: 232.165.14.34.bc.googleusercontent.com | F2B/ufw-honeypot@2026-09-05T09:03:22Z
show less
Port Scan
Hacking
🇸🇪
SkyDancer
2026-09-05 01:53:20
(1 day ago)
Multiple intrusion attempts via http/https on known vulnerable url offsets. Attack automatically blo ...
show more
Multiple intrusion attempts via http/https on known vulnerable url offsets. Attack automatically blocked by SkyDancer Ai(web-X).
show less
Hacking
Brute-Force
Anonymous
2026-09-04 21:59:03
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇸🇪
vaia.cloud
2026-09-04 21:55:01
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 21:08:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.14.165.232 (232.165.14.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.14.165.232 (232.165.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:08:44.701583 2026] [security2:error] [pid 3106:tid 3183] [client 34.14.165.232:49058] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.totalbodycare753.com"] [uri "/site/.git/config"] [unique_id "apszXGKvq6Tz6axckhMaHwAAARA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-04 20:11:04
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
🇫🇮
mnazibo
2026-09-04 20:00:03
(1 day ago)
Date: 04/Sep/2026 22:13:10 | Reported IP: 34.14.165.232 mod_security | id: 930130 | IN/group.my_doma ...
show more
Date: 04/Sep/2026 22:13:10 | Reported IP: 34.14.165.232 mod_security | id: 930130 | IN/group.my_domain/- | Connections: 12 | Blocked: Permanent Block: [LF_MODSEC] | URIs: /api/.git/config; /app/.git/config; /backend/.git/config; /.git/config; /htdocs/.git/config; /html/.git/config; /public/.git/config; /site/.git/config; /src/.git/config; /var/www/.git/config; /wordpress/.git/config; /www/.git/config | Logs: Restricted File Access Attempt
show less
SQL Injection
Brute-Force
Bad Web Bot
🇺🇸
dot.mg
2026-09-04 18:39:17
(1 day ago)
Bad behaviour
Web Spam
🇫🇮
pixiekat
2026-09-04 18:37:23
(1 day ago)
[Fri Sep 04 19:37:22.435303 2026] [authz_core:error] [pid 965304:tid 965393] [client 34.14.165.232:4 ...
show more
[Fri Sep 04 19:37:22.435303 2026] [authz_core:error] [pid 965304:tid 965393] [client 34.14.165.232:43638] AH01630: client denied by server configuration: proxy:http://100.79.113.37:8096/public/.git/config
[Fri Sep 04 19:37:22.442513 2026] [authz_core:error] [pid 965303:tid 965379] [client 34.14.165.232:43582] AH01630: client denied by server configuration: proxy:http://100.79.113.37:8096/backend/.git/config
[Fri Sep 04 19:37:22.444988 2026] [authz_core:error] [pid 965303:tid 965388] [client 34.14.165.232:43556] AH01630: client denied by server configuration: proxy:http://100.79.113.37:8096/site/.git/config
[Fri Sep 04 19:37:22.448167 2026] [authz_core:error] [pid 965303:tid 965402] [client 34.14.165.232:43596] AH01630: client denied by server configuration: proxy:http://100.79.113.37:8096/.git/config
[Fri Sep 04 19:37:22.450464 2026] [authz_core:error] [pid 965304:tid 965413] [client 34.14.165.232:43642] AH01630: client denied by server configuration: proxy:http://100.79.113.37:8096/ww
...
show less
Brute-Force
🇬🇧
consul.to
2026-09-04 14:38:42
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
EvilTurkey
2026-09-04 13:42:44
(1 day ago)
Web app attack against financial institution website.
Web App Attack
Hacking