🇮🇪
RoboSOC
2026-09-11 06:49:09
(15 hours ago)
React Server Components Remote Code Execution Vulnerability, PTR: 252.127.151.34.bc.googleuserconten ...
show more
React Server Components Remote Code Execution Vulnerability, PTR: 252.127.151.34.bc.googleusercontent.com.
show less
Hacking
🇳🇱
MyGlobalFlowers
2026-09-11 05:41:33
(16 hours ago)
Multiple WAF Violations
Web App Attack
🇬🇧
oja
2026-09-11 05:32:44
(16 hours ago)
Aggressive web scanner
Web App Attack
🇧🇪
cmbplf
2026-09-11 05:28:31
(16 hours ago)
169 requests with url.path *.ssh/*
162 requests with url.path *.aws/*
Brute-Force
Bad Web Bot
🇬🇧
consul.to
2026-09-11 05:10:42
(16 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇫🇷
Baking333
2026-09-11 04:40:56
(17 hours ago)
[redacted] 34.151.127.252 - - [11/Sep/2026:05:40:55 +0100] "GET /.git/config HTTP/1.1" 302 6778 0/42 ...
show more
[redacted] 34.151.127.252 - - [11/Sep/2026:05:40:55 +0100] "GET /.git/config HTTP/1.1" 302 6778 0/42009 "-" "CCBot/2.0 (https://[redacted]/faq/)" [redacted] 34.151.127.252 - - [11/Sep/2026:05:40:55 +0100] "GET /.aws/credentials HTTP/1.1" 302 6778 0/98954 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@[redacted])" [redacted] 34.151.127.252 - - [11/Sep/2026:05:40:55 +0100] "GET /.git/HEAD HTTP/1.1" 302 6778 0/44419 "-" "Mozilla/5.0 (compatible; MoonshotBot/1.0; +https://[redacted]/)" [redacted] 34.151.127.252 - - [11/Sep/2026:05:40:55 +0100] "GET /.aws/config HTTP/1.1" 302 6778 0/42529 "-" "Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://[redacted]/)"
show less
Bad Web Bot
Web App Attack
🇩🇪
london2038.com
2026-09-11 04:28:01
(17 hours ago)
Probing for exploits
34.151.127.252 - - [11/Sep/2026:06:27:57 +0200] "GET /.git/config HTTP/2.0" 422 ...
show more
Probing for exploits
34.151.127.252 - - [11/Sep/2026:06:27:57 +0200] "GET /.git/config HTTP/2.0" 422 0 "-" "Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/)"
34.151.127.252 - - [11/Sep/2026:06:27:57 +0200] "GET /.aws/credentials HTTP/2.0" 422 0 "-" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)"
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 04:26:18
(17 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.151.127.252 (252.127.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.151.127.252 (252.127.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 00:26:13.435045 2026] [security2:error] [pid 1397:tid 1397] [client 34.151.127.252:54026] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lockyers.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lockyers.com"] [uri "/rclone.conf"] [unique_id "aqOC5eBjF9dOOGRQ5_sA8gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇷
Halux
2026-09-11 04:05:38
(17 hours ago)
34.151.127.252 Probing protected path or service
Web App Attack
🇳🇱
debestelapp
2026-09-11 04:05:14
(17 hours ago)
Web App Attack
🇺🇸
helios.live
2026-09-11 03:45:25
(18 hours ago)
2026/09/11 03:45:21 [error] 268899#268899: *2795320 access forbidden by rule, client: 34.151.127.252 ...
show more
2026/09/11 03:45:21 [error] 268899#268899: *2795320 access forbidden by rule, client: 34.151.127.252, server: kocerroxy.com, request: "GET /.vite/manifest.json HTTP/1.1", host: "kocerroxy.com"
2026/09/11 03:45:21 [error] 268899#268899: *2795318 access forbidden by rule, client: 34.151.127.252, server: kocerroxy.com, request: "GET /dist/.vite/manifest.json HTTP/1.1", host: "kocerroxy.com"
2026/09/11 03:45:24 [error] 268899#268899: *2795320 access forbidden by rule, client: 34.151.127.252, server: kocerroxy.com, request: "GET /.env.local?raw HTTP/1.1", host: "kocerroxy.com"
2026/09/11 03:45:24 [error] 268899#268899: *2795319 access forbidden by rule, client: 34.151.127.252, server: kocerroxy.com, request: "GET /.dockerenv HTTP/1.1", host: "kocerroxy.com"
2026/09/11 03:45:25 [error] 268899#268899: *2795320 access forbidden by rule, client: 34.151.127.252, server: kocerroxy.com, request: "GET /.env.production?raw HTTP/1.1", host: "kocerroxy.com"
...
show less
Web App Attack
🇳🇱
e.fierstra
2026-09-11 03:20:57
(18 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
[email protected]
2026-09-11 03:03:52
(18 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-11T03:03:52Z
Brute-Force
🇫🇮
Shaik Sai Meera
2026-09-11 02:50:07
(19 hours ago)
IM360 WAF: Hidden file access
Brute-Force
🇮🇹
Inartis
2026-09-11 02:47:14
(19 hours ago)
34.151.127.252 - - [11/Sep/2026:04:47:13 +0200] "GET /.git/HEAD HTTP/1.1" 302 433 "-" "Mozilla/5.0 A ...
show more
34.151.127.252 - - [11/Sep/2026:04:47:13 +0200] "GET /.git/HEAD HTTP/1.1" 302 433 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.3; +https://openai.com/gptbot)"
...
show less
Brute-Force
Bad Web Bot
Web App Attack