๐บ๐ธ
TPI-Abuse
2026-06-15 02:03:50
(10 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.14.220.216 (216.220.14.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.14.220.216 (216.220.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:03:44.387453 2026] [security2:error] [pid 15927:tid 15927] [client 34.14.220.216:41040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.sinsky.net"] [uri "/site/.git/config"] [unique_id "ai9dgDTf5VEcvDsEoO6xAgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2026-06-15 01:36:38
(38 minutes ago)
AutoBlock: โ๏ธ Configuration File Access (Non Decay-Based)
Hacking
Web App Attack
๐บ๐ธ
JustMeHere
2026-06-15 01:12:57
(1 hour ago)
[Sun Jun 14 21:12:53.486323 2026] [security2:error] [pid 165899:tid 165932] [client 34.14.220.216:45 ...
show more
[Sun Jun 14 21:12:53.486323 2026] [security2:error] [pid 165899:tid 165932] [client 34.14.220.216:45150] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.15.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "www.yorknation.com"] [uri "/v1/.git/config"] [unique_id "ai9RlcqG5AJQVM2gz5-4lwAAAMU"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:12:11
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.14.220.216 (216.220.14.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.14.220.216 (216.220.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:12:06.557669 2026] [security2:error] [pid 8868:tid 8868] [client 34.14.220.216:53600] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pressentertoexit.com"] [uri "/site/.git/config"] [unique_id "ai9RZu_m2mbX19ytlg3EBwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 00:35:02
(1 hour ago)
suspicious request in access.log
Web App Attack
๐ฌ๐ง
consul.to
2026-06-15 00:26:14
(1 hour ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
mnsf
2026-06-15 00:18:13
(1 hour ago)
Too many Status 40X (12)
Scanning/Probing (30)
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 00:12:24
(2 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 00:11:32
(2 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.14.220.216 (216.220.14.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.14.220.216 (216.220.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:11:25.851563 2026] [security2:error] [pid 29708:tid 29708] [client 34.14.220.216:54146] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "dcagroupusa.com"] [uri "/api/.git/config"] [unique_id "ai9DLeqz-_LTydtlSeFXKgAAAHw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
Origon
2026-06-14 23:26:07
(2 hours ago)
http-sensitive-files - IP: 34.14.220.216 - time="2026-06-15T01:26:06+02:00" level=info msg="(555f66 ...
show more
http-sensitive-files - IP: 34.14.220.216 - time="2026-06-15T01:26:06+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 34.14.220.216 (IN/396982) : 4h ban on Ip 34.14.220.216" module=db
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:47:26
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.14.220.216 (216.220.14.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.14.220.216 (216.220.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:47:20.224213 2026] [security2:error] [pid 2432:tid 2432] [client 34.14.220.216:45220] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.acmax.com"] [uri "/src/.git/config"] [unique_id "ai8veLLRR0ZpdXPpQEBDCgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
grassau.com
2026-06-14 22:44:25
(3 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.14.220.216 (IN/India/Maharashtra/Mum ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.14.220.216 (IN/India/Maharashtra/Mumbai/216.220.14.34.bc.googleusercontent.com)
show less
SQL Injection
๐ซ๐ท
dynamix
2026-06-14 22:40:51
(3 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:14:07
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.14.220.216 (216.220.14.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.14.220.216 (216.220.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:14:03.373382 2026] [security2:error] [pid 17042:tid 17051] [client 34.14.220.216:49606] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vavryn.net"] [uri "/assets/.git/config"] [unique_id "ai8nqxpwJQh7rUMSEiDdFwAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 14:37:15
(11 hours ago)
20 attempts against mh-misbehave-ban on boron
Brute-Force
Bad Web Bot
Web App Attack