๐ณ๐ฑ
e.fierstra
2026-09-18 13:10:37
(6 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 16:01:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.141.44.66 (66.44.141.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.141.44.66 (66.44.141.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 12:01:41.704837 2026] [security2:error] [pid 29546:tid 29546] [client 34.141.44.66:49834] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "67ronin.com"] [uri "/.git/config"] [unique_id "aqwO5TEHnaDqekUJXAuTuQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-09-17 02:02:17
(1 day ago)
Aggressive web search of vulnerable pages: / /.env /.env.local /app/.env /apps/.env ...
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-16 13:16:01
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 12:56:06
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.141.44.66 (66.44.141.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.141.44.66 (66.44.141.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 08:56:02.535101 2026] [security2:error] [pid 18432:tid 18432] [client 34.141.44.66:48684] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "36hoursonly.com"] [uri "/.git/config"] [unique_id "aqqR4lhi5jLkOf2ci7GCpAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WellSpring
2026-09-16 03:12:07
(2 days ago)
env leak on 601.today/server/.env โ WellSpr.ing/NetSentinel civic-AI security layer
Web App Attack
Anonymous
2026-09-16 01:25:02
(2 days ago)
suspicious request in access.log
Web App Attack
๐ง๐ช
Saec
2026-09-16 01:21:09
(2 days ago)
Jarvis auto-ban: Honeypot /.git/config via 6.saec.me [DE] ASN:Google LLC
Port Scan
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-16 01:18:09
(2 days ago)
20 attempts against mh-misbehave-ban on orcus
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 00:02:53
(2 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
Anonymous
2026-09-15 22:05:52
(2 days ago)
Flagged as abuse by IisGuard automated detection (tier L3, score 65/100). Reasons: Reputation=1, Bad ...
show more
Flagged as abuse by IisGuard automated detection (tier L3, score 65/100). Reasons: Reputation=1, BadPath=23,9, Rate=20, Diversity=20.
show less
Web App Attack
DDoS Attack
Bad Web Bot
๐ฎ๐น
VHosting
2026-09-15 22:00:05
(2 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 16:59:35
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.141.44.66 (66.44.141.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.141.44.66 (66.44.141.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 12:59:30.168313 2026] [security2:error] [pid 16971:tid 16971] [client 34.141.44.66:43634] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "5starfluffandfold.com"] [uri "/.git/config"] [unique_id "aql5cs3edm35rwS9bqUwRAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 14:20:29
(3 days ago)
34.141.44.66 - - [15/Sep/2026:16:20:22 +0200] "GET /.git/config HTTP/1.1" 403 614 "-" "Mozilla/5.0 ( ...
show more
34.141.44.66 - - [15/Sep/2026:16:20:22 +0200] "GET /.git/config HTTP/1.1" 403 614 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.141.44.66 - - [15/Sep/2026:16:20:23 +0200] "GET /.env HTTP/1.1" 403 614 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.141.44.66 - - [15/Sep/2026:16:20:23 +0200] "GET /.env.local HTTP/1.1" 403 614 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.141.44.66 - - [15/Sep/2026:16:20:23 +0200] "GET /.env.production HTTP/1.1" 403 614 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.141.44.66 - - [15/Sep/2026:16:20:23 +0200] "GET /.env.staging HTTP/1.1" 403 614 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrom
...
show less
DDoS Attack