๐ซ๐ท
service Informatique
2026-09-02 04:00:37
(7 hours ago)
GET /wp-config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 13:55:11
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.179.23 (23.179.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.179.23 (23.179.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 09:55:03.424780 2026] [security2:error] [pid 17773:tid 17773] [client 34.148.179.23:44782] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.tortoisehosting.com"] [uri "/wp-config.php.bak"] [unique_id "apbZNyJwPQ-_vv87h8PVNgAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 12:56:17
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.179.23 (23.179.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.179.23 (23.179.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 08:56:09.576269 2026] [security2:error] [pid 18073:tid 18073] [client 34.148.179.23:37066] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "preppypreppers.vanemby.com"] [uri "/wp-config.php.bak"] [unique_id "apbLaXlaM7x_OZCZC3lrwAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
Saec
2026-09-01 12:14:01
(23 hours ago)
Jarvis auto-ban: CF top attacker on saec.me (26 hits, US)
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 12:09:25
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.179.23 (23.179.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.179.23 (23.179.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 08:09:18.276572 2026] [security2:error] [pid 10282:tid 10282] [client 34.148.179.23:38054] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dev.handyrehab.com"] [uri "/.env.bak"] [unique_id "apbAbkeVHgqlOW9cSXfG-wAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 11:05:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.148.179.23 (23.179.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.179.23 (23.179.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 07:05:51.905420 2026] [security2:error] [pid 16354:tid 16354] [client 34.148.179.23:58240] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.wsspy.com"] [uri "/.env.save"] [unique_id "apaxj-5pJN3RXZqkLqsF_QAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
wpadm4
2026-09-01 10:45:09
(1 day ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
daveoctober
2026-09-01 10:27:42
(1 day ago)
October Sentinel: honeypot triggered
Bad Web Bot
Web App Attack
๐ฆ๐บ
AWW-Admin
2026-09-01 07:47:54
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.148.179.23 (US/United States/23.179. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.148.179.23 (US/United States/23.179.148.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-01 07:07:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.148.179.23 (23.179.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.179.23 (23.179.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 03:07:10.485290 2026] [security2:error] [pid 12869:tid 12869] [client 34.148.179.23:52898] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mwtemperature.com"] [uri "/.env.example"] [unique_id "apZ5njX9AlkIK74vZd-gPwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
tsZero
2026-09-01 06:49:14
(1 day ago)
Scan example: path=/.env.dev status=403
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 06:43:26
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.148.179.23 (23.179.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.179.23 (23.179.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:43:19.091541 2026] [security2:error] [pid 32263:tid 32263] [client 34.148.179.23:37362] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "takeapawsboston.com"] [uri "/.env.old"] [unique_id "apZ0B21WeKxVceHSmVEBBwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
clauss
2026-09-01 06:21:40
(1 day ago)
34.148.179.23 - - [01/Sep/2026:09:21:39 +0300] "GET /actuator/configprops HTTP/2.0" 404 21349 "-" "c ...
show more
34.148.179.23 - - [01/Sep/2026:09:21:39 +0300] "GET /actuator/configprops HTTP/2.0" 404 21349 "-" "crusader-worker/1.0"
34.148.179.23 - - [01/Sep/2026:09:21:39 +0300] "GET /.env.save HTTP/2.0" 404 21351 "-" "crusader-worker/1.0"
...
show less
Web App Attack
Anonymous
2026-09-01 05:30:02
(1 day ago)
suspicious request in access.log
Web App Attack
Anonymous
2026-09-01 04:30:06
(1 day ago)
WordPress Sensitive System Files Information Disclosure.
Hacking