๐จ๐ญ
๐จ๐ญ Hosting
2026-08-29 05:10:10
(6 hours ago)
Automated WAF report: 300-400 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
๐ฉ๐ช
netclix.gr
2026-08-28 14:02:25
(22 hours ago)
(security_scan) Sensitive File Scan Blocked 34.140.171.206 (BE/Belgium/206.171.140.34.bc.googleuserc ...
show more
(security_scan) Sensitive File Scan Blocked 34.140.171.206 (BE/Belgium/206.171.140.34.bc.googleusercontent.com): 1 in the last 4600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.140.171.206 - - [28/Aug/2026:17:02:20 +0300] "GET /@fs/../../.env?raw?? HTTP/1.1" 400 150 "-" "-"
show less
Port Scan
๐ฑ๐ป
garmtech.com
2026-08-28 14:00:17
(22 hours ago)
Attempted access to sensitive endpoint (/@fs/../.env?raw??) detected. Automated scan or unauthorized ...
show more
Attempted access to sensitive endpoint (/@fs/../.env?raw??) detected. Automated scan or unauthorized probing.
show less
Web App Attack
๐บ๐ธ
Major Hostility
2026-08-28 11:34:19
(1 day ago)
"GET /@fs/home/debian/.aws/credentials?raw?? HTTP/1.1" 404
"GET /@fs/etc/passwd?raw?? HTTP/1.1" 404
...
show more
"GET /@fs/home/debian/.aws/credentials?raw?? HTTP/1.1" 404
"GET /@fs/etc/passwd?raw?? HTTP/1.1" 404
"GET /@fs/root/.aws/credentials.bak?raw?? HTTP/1.1" 404
"GET /@fs/root/.aws/credentials?raw?? HTTP/1.1" 404
"GET /@fs/home/admin/.aws/credentials?raw?? HTTP/1.1" 404
"GET /@fs/..%252f..%252f..%252f..%252f..%252froot/.env?raw?? HTTP/1.1" 404
"GET /@fs/app/.env?raw?? HTTP/1.1" 404
show less
Web App Attack
๐ธ๐ฌ
Cloudkul Cloudkul
2026-08-28 10:48:30
(1 day ago)
Attempted Brute Force on our application
Brute-Force
Web App Attack
๐ณ๐ฑ
ConsulHosting
2026-08-28 10:00:27
(1 day ago)
Automatically blocked due to distributed attack
Hacking
Anonymous
2026-08-28 09:47:11
(1 day ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-28 09:25:47
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 06:43:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.140.171.206 (206.171.140.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.140.171.206 (206.171.140.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 02:43:24.147272 2026] [security2:error] [pid 10964:tid 10964] [client 34.140.171.206:14812] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scrood.fm"] [uri "/@fs/.env"] [unique_id "apEuDAZpx6yyyvQw2-2YewAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 06:40:13
(1 day ago)
Bot / seems abusive / Apache connections: 53
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 06:15:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.140.171.206 (206.171.140.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.140.171.206 (206.171.140.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 02:14:56.969295 2026] [security2:error] [pid 31624:tid 31674] [client 34.140.171.206:14960] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.deyyoungart.com"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252froot/.env"] [unique_id "apEnYFDulYMIkIX4OK-QzwAAARE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-28 05:38:44
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-28 05:32:20
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.140.171.206 (206.171.140.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.140.171.206 (206.171.140.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 01:32:14.318552 2026] [security2:error] [pid 7036:tid 7036] [client 34.140.171.206:39834] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.fancycleaners.com"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252froot/.env"] [unique_id "apEdXnvf999jL1poaEgQHAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-28 04:53:10
(1 day ago)
Restricted File Access Attempt. Matched phrase "/@fs/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐ท๐ด
iulianh
2026-08-28 04:53:05
(1 day ago)
80,443
Brute-Force
SSH