🇺🇸
TPI-Abuse
2026-09-05 19:45:03
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.143.163.43 (43.163.143.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.163.43 (43.163.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 15:44:58.692335 2026] [security2:error] [pid 30727:tid 30758] [client 34.143.163.43:50672] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.colinkyffinmusic.com"] [uri "/.git/config"] [unique_id "apxxOlyjTaewCShlwzetUgAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
rubixstudios
2026-09-05 18:17:02
(1 week ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack
🇮🇹
VHosting
2026-09-05 15:15:03
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇫🇷
Octopuce
2026-09-05 00:40:16
(1 week ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
🇩🇪
pltcldvlpr
2026-09-05 00:10:31
(1 week ago)
CMS/framework probe: 34.143.163.43 - - [05/Sep/2026:02:10:31 +0200] "GET /.git/config HTTP/1.1" 444 ...
show more
CMS/framework probe: 34.143.163.43 - - [05/Sep/2026:02:10:31 +0200] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" asn=396982 org="Google LLC" country=SG
...
show less
Web App Attack
🇨🇭
zynex
2026-09-05 00:10:25
(1 week ago)
URL Probing: /server/.env
Web App Attack
🇧🇪
cmbplf
2026-09-04 21:53:24
(1 week ago)
10.563 requests with url.path *.env
1.476 requests with url.path *phpinfo.php
300 requests with u ...
show more
10.563 requests with url.path *.env
1.476 requests with url.path *phpinfo.php
300 requests with url.path *credentials.json
138 requests with url.path *.php.bak
show less
Brute-Force
Bad Web Bot
🇳🇱
e.fierstra
2026-09-04 14:51:49
(1 week ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-03 02:26:05
(1 week ago)
Excessive 404/403 errors
Brute-Force
🇳🇱
e.fierstra
2026-09-03 01:03:55
(1 week ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 18:33:41
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.143.163.43 (43.163.143.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.163.43 (43.163.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 14:33:32.700809 2026] [security2:error] [pid 4530:tid 4530] [client 34.143.163.43:35304] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "7319atwood.com"] [uri "/.git/config"] [unique_id "aphr_MrbleKiIxJSJY_vngAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 04:45:01
(1 week ago)
(mod_security) mod_security (id:949110) triggered by 34.143.163.43 (43.163.143.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.143.163.43 (43.163.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:44:53.510111 2026] [security2:error] [pid 20612:tid 20612] [client 34.143.163.43:43690] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "789-bid.net"] [uri "/.git/config"] [unique_id "apepxSgod5-qU4Po2NOr3QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 02:29:20
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.143.163.43 (43.163.143.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.163.43 (43.163.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 22:29:15.009660 2026] [security2:error] [pid 6673:tid 6673] [client 34.143.163.43:33640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "785insulation.com"] [uri "/.git/config"] [unique_id "apeJ-zW5LqAyd3moXZruAQAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
WellSpring
2026-09-01 22:17:45
(1 week ago)
env leak on 779.today/public/.env — WellSpr.ing/NetSentinel civic-AI security layer
Web App Attack