🇩🇪
pscriptos
2026-09-02 13:06:52
(4 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇩🇪
FeG Deutschland
2026-09-02 12:57:26
(4 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
Anonymous
2026-09-02 07:37:04
(10 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇫🇷
masterguru
2026-09-02 06:44:45
(10 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
🇩🇪
FD-IX
2026-09-02 05:01:34
(12 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 04:46:41
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.147.123.252 (252.123.147.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.147.123.252 (252.123.147.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:46:36.658890 2026] [security2:error] [pid 20749:tid 20749] [client 34.147.123.252:46948] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.joyfulservice.com"] [uri "/app/.git/config"] [unique_id "apeqLAawDQ3KELeCv_uqxgAAAIM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-02 04:43:34
(12 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
Operator873
2026-09-02 01:55:05
(15 hours ago)
2026/09/01 20:54:58 [error] 2681768#0: *3890588 access forbidden by rule, client: 34.147.123.252, se ...
show more
2026/09/01 20:54:58 [error] 2681768#0: *3890588 access forbidden by rule, client: 34.147.123.252, server: [OBFUSCATED], request: "GET /public/.git/config HTTP/1.1", host: "[OBFUSCATED]"
2026/09/01 20:54:58 [error] 2681768#0: *3890588 access forbidden by rule, client: 34.147.123.252, server: [OBFUSCATED], request: "GET /public/.git/config HTTP/1.1", host: "[OBFUSCATED]"
2026/09/01 20:54:58 [error] 2681768#0: *3890589 access forbidden by rule, client: 34.147.123.252, server: [OBFUSCATED], request: "GET /www/.git/config HTTP/1.1", host: "[OBFUSCATED]"
2026/09/01 20:54:58 [error] 2681768#0: *3890589 access forbidden by rule, client: 34.147.123.252, server: [OBFUSCATED], request: "GET /www/.git/config HTTP/1.1", host: "[OBFUSCATED]"
2026/09/01 20:54:58 [error] 2681767#0: *3890590 access forbidden by rule, client: 34.147.123.252, server: [OBFUSCATED], request: "GET /backend/.git/config HTTP/1.1", host: "[OBFUSCATED]"
...
show less
Brute-Force
Web App Attack
🇩🇪
BlueWire Hosting
2026-09-02 00:35:43
(17 hours ago)
Probing websites for vulnerabilities
Web App Attack
SQL Injection
🇺🇸
TPI-Abuse
2026-09-02 00:21:38
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.147.123.252 (252.123.147.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.147.123.252 (252.123.147.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 20:21:28.742170 2026] [security2:error] [pid 5303:tid 5303] [client 34.147.123.252:45008] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gdg1.com"] [uri "/api/.git/config"] [unique_id "apdsCI7QpXyWzE474XT3kwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-01 18:13:52
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.147.123.252 (252.123.147.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.147.123.252 (252.123.147.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 14:13:44.953376 2026] [security2:error] [pid 5848:tid 5848] [client 34.147.123.252:42588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.abraxasstudio.com"] [uri "/api/.git/config"] [unique_id "apcV2C0JvjFKR-Ih4mo1FwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Aetherweb Ark
2026-09-01 14:49:20
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 34.147.123.252 (252.123.147.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:949110) triggered by 34.147.123.252 (252.123.147.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
🇸🇪
vaia.cloud
2026-09-01 14:10:02
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
Anonymous
2026-09-01 13:56:23
(1 day ago)
34.147.123.252 - - [01/Sep/2026:15:56:23 +0200] "GET /www/.git/config HTTP/1.1" 301 169 "-" "crusade ...
show more
34.147.123.252 - - [01/Sep/2026:15:56:23 +0200] "GET /www/.git/config HTTP/1.1" 301 169 "-" "crusader-worker/1.0"
show less
Web App Attack
Anonymous
2026-09-01 13:55:01
(1 day ago)
suspicious request in access.log
Web App Attack