πͺπΈ
el-brujo
2026-10-08 06:46:02
(11 hours ago)
08/Oct/2026:08:46:01.941147 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
08/Oct/2026:08:46:01.941147 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 34.151.246.201] ModSecurity: Warning. Pattern match "(?i)(?:\\\\\\\\x5c|(?:%(?:c(?:0%(?:[2aq]f|5c|9v)|1%(?:[19p]c|8s|af))|2(?:5(?:c(?:0%25af|1%259c)|2f|5c)|%46|f)|(?:(?:f(?:8%8)?0%8|e)0%80%a|bg%q)f|%3(?:2(?:%(?:%6|4)6|F)|5%%63)|u(?:221[56]|002f|EFC8|F025)|1u|5c)|0x(?:2f|5c)|\\\\\\\\/))(?:%(?:(?:f(?:(?:c%80|8)%8)?0%8 ..." at REQUEST_URI_RAW. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "48"] [id "930100"] [msg "Path Traversal Attack (/../)"] [data "Matched Data: /../ found within REQUEST_URI_RAW: /api/w/default/jobs_u/get_log_file/../../../../proc/self/environ"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [hostname "grafana.elhacker.net"] [uri "/api/proc/self/environ"] [uniq
...
show less
Hacking
Web App Attack
πΊπ¦
URAN Publishing Service
2026-10-08 05:10:39
(13 hours ago)
[08/Oct/2026:08:10:38 +0300] -- 34.151.246.201 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET ...
show more
[08/Oct/2026:08:10:38 +0300] -- 34.151.246.201 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /assets/manifest.json HTTP/1.1
show less
Bad Web Bot
Web App Attack
π§πͺ
taivas.nl
2026-10-08 04:33:26
(13 hours ago)
Many_bad_calls
Web App Attack
πΈπ¬
Cloudkul Cloudkul
2026-10-08 03:36:23
(14 hours ago)
Attempted Brute Force on our application
Brute-Force
Web App Attack
Anonymous
2026-10-08 01:40:01
(16 hours ago)
"GET /userfiles/x?path=../../.env HTTP/1.1"
Hacking
Web App Attack
π¨πΏ
gszasz
2026-10-07 23:22:07
(19 hours ago)
[Thu Oct 08 01:22:02.639293 2026] [authz_core:error] [pid 5294:tid 5391] [client 34.151.246.201:5224 ...
show more
[Thu Oct 08 01:22:02.639293 2026] [authz_core:error] [pid 5294:tid 5391] [client 34.151.246.201:52244] AH01630: client denied by server configuration: /srv/astro.physics.muni.cz/www/.htpasswd
[Thu Oct 08 01:22:06.722517 2026] [authz_core:error] [pid 5203:tid 5251] [client 34.151.246.201:52212] AH01630: client denied by server configuration: /usr/share/awstats
[Thu Oct 08 01:22:07.200297 2026] [authz_core:error] [pid 5203:tid 5237] [client 34.151.246.201:52212] AH01630: client denied by server configuration: /usr/share/awstats
...
show less
Brute-Force
Web App Attack
π§π·
radardatelecom
2026-10-07 22:27:05
(20 hours ago)
Blocked by Radar da Telecom firewall β abuseipdb
Bad Web Bot
Web App Attack
π«π·
SpaceHost-Server
2026-10-07 22:21:44
(20 hours ago)
Brute-Force
Web App Attack
πΊπΈ
www.winos.me
2026-10-07 21:28:50
(21 hours ago)
Malicious Scraper (0 static requests, 10 UAs in 18 reqs)
Port Scan
Hacking
Anonymous
2026-10-07 21:13:33
(21 hours ago)
Apache HTTP Server Directory Traversal; PHP Wrappers Local File Inclusion; PHP Command Injection; PH ...
show more
Apache HTTP Server Directory Traversal; PHP Wrappers Local File Inclusion; PHP Command Injection; PHP CGI Argument Injection (CVE-2024-4577); Sensitive Configuration File Disclosure; Web Servers Directory Traversal.
show less
Web App Attack
Hacking
π³π±
Alt255
2026-10-07 19:04:29
(23 hours ago)
[cb-14al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail ngin ...
show more
[cb-14al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail nginx-404. Example: 34.151.246.201 - - [07/Oct/2026:21:04:22 +0200] "GET /z9x8c7v6b5-debug-trigger-ridowastore.nl HTTP/1.0" 404 3579 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot)"
34.151.246.201 - - [07/Oct/2026:21:04:23 +0200] "GET /jvf173uazf61rtymumrw HTTP/1.0" 404 3579 "-" "Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)"
34.151.246.201 - - [07/Oct/2026:21:04:23 +0200] "POST /graphql HTTP/1.0" 404 3579 "https://ridowastore.nl" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
34.151.246.201 - - [07/Oct/2026:21:04:23 +0200] "GET /userfiles/x?path=../../../../proc/self/environ HTTP/1.0" 404 3579 "-" "Mozilla/5.0 (compatible; YiBot/1.0; +https://01.ai/)"
34.151
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
agenciahypelab.com.br
2026-10-07 18:46:50
(23 hours ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
π³π±
debestelapp
2026-10-07 18:45:08
(23 hours ago)
Web App Attack
Anonymous
2026-10-07 18:32:54
(23 hours ago)
Banned by Fail2Ban on server
Web App Attack
π©πͺ
altenglaner
2026-10-07 18:15:13
(1 day ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack