๐บ๐ธ
nyt
2026-09-16 13:58:04
(17 hours ago)
Sensitive File Probe, Attempt to access sensitive .env file
Web App Attack
๐บ๐ธ
nyt
2026-09-16 08:49:08
(22 hours ago)
Sensitive File Probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 00:17:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.146.175.75 (75.175.146.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.175.75 (75.175.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 20:16:56.071195 2026] [security2:error] [pid 14495:tid 14495] [client 34.146.175.75:52708] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "manjitsingh.com"] [uri "/.env"] [unique_id "aqnf-DNHo9rAmSfuj9imfwAAAAg"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
dot.mg
2026-09-16 00:16:03
(1 day ago)
Bruteforce
Bad Web Bot
๐ซ๐ท
Stara
2026-09-16 00:12:21
(1 day ago)
ModSecurity detected web attack - .env/config probing or SQLi/Code injection (Rule 949110)
Brute-Force
Hacking
Web App Attack
๐บ๐ธ
IndigoRidge
2026-09-15 22:07:52
(1 day ago)
34.146.175.75 - - [15/Sep/2026:18:07:50 -0400] "GET /.env HTTP/1.1" 503 5526 "https://www.google.com ...
show more
34.146.175.75 - - [15/Sep/2026:18:07:50 -0400] "GET /.env HTTP/1.1" 503 5526 "https://www.google.com/" "Mozilla/5.0 (compatible; MSIE 9.0; Macintosh; .NET CLR 2.0.5407; Intel Mac OS X 10_6_4)"
34.146.175.75 - - [15/Sep/2026:18:07:51 -0400] "GET //vendor/.env HTTP/1.1" 503 5526 "https://www.google.com/" "Mozilla/5.0 (compatible; MSIE 9.0; Macintosh; .NET CLR 2.0.5407; Intel Mac OS X 10_6_4)"
34.146.175.75 - - [15/Sep/2026:18:07:51 -0400] "GET //lib/.env HTTP/1.1" 503 5526 "https://www.google.com/" "Mozilla/5.0 (compatible; MSIE 9.0; Macintosh; .NET CLR 2.0.5407; Intel Mac OS X 10_6_4)"
...
show less
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-15 22:00:11
(1 day ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 14:51:20
(1 day ago)
[ssd1.kdns.gr] httpd-config-scan: sites=www.dacorlaw.com; logs=/var/log/httpd/domains/dacorlaw.com.l ...
show more
[ssd1.kdns.gr] httpd-config-scan: sites=www.dacorlaw.com; logs=/var/log/httpd/domains/dacorlaw.com.log; samples=/.env | //vendor/.env | /vendor/.env
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 13:35:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.146.175.75 (75.175.146.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.175.75 (75.175.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 09:35:46.815489 2026] [security2:error] [pid 14504:tid 14504] [client 34.146.175.75:57202] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barbaraehill.com"] [uri "/.env"] [unique_id "aqlJspIK1-QLgBTkTKpGswAAABQ"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 13:20:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.146.175.75 (75.175.146.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.175.75 (75.175.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 09:20:26.948178 2026] [security2:error] [pid 2029:tid 2029] [client 34.146.175.75:54502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barbaraedidin.com"] [uri "/.env"] [unique_id "aqlGGj6BM_gWxEbgCczXggAAAAc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-15 13:02:13
(1 day ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.env (Match: /.env)
show less
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
Lee Daniel
2026-09-15 12:48:26
(1 day ago)
34.146.175.75 - - [15/Sep/2026:08:48:25 -0400] "GET /.env HTTP/1.1" 403 6355 "https://www.google.com ...
show more
34.146.175.75 - - [15/Sep/2026:08:48:25 -0400] "GET /.env HTTP/1.1" 403 6355 "https://www.google.com/" "Mozilla/5.0 (Windows; U; MSIE 6.1; Linux x86_64; .NET CLR 1.0.27976; X11)"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-15 10:38:31
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
XICTRON
2026-09-15 08:05:06
(1 day ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-09-15 07:56:40
(1 day ago)
Login credentials theft attempt
Hacking