๐บ๐ธ
WellSpring
2026-09-10 08:17:41
(4 weeks ago)
env leak on 208.today/public/.env โ WellSpr.ing/NetSentinel civic-AI security layer
Web App Attack
๐บ๐ธ
Vidarr
2026-09-10 07:10:03
(4 weeks ago)
Automated web attack observed against vardrsec.com. Cloudflare blocked malicious requests including: ...
show more
Automated web attack observed against vardrsec.com. Cloudflare blocked malicious requests including: /express/.env
show less
Web App Attack
๐บ๐ธ
Vidarr
2026-09-10 07:10:03
(4 weeks ago)
Automated web attack observed against vardrsec.com. Cloudflare blocked 1 malicious request(s) includ ...
show more
Automated web attack observed against vardrsec.com. Cloudflare blocked 1 malicious request(s) including: /express/.env
show less
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-09 23:50:02
(4 weeks ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-09 22:13:02
(4 weeks ago)
20 attempts against mh-misbehave-ban on ec102950
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-09 20:50:03
(4 weeks ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-09 20:18:23
(4 weeks ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-09 20:02:48
(4 weeks ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-09 19:00:28
(4 weeks ago)
Excessive 404/403 errors
Brute-Force
๐ณ๐ฑ
Eric
2026-09-09 18:46:19
(4 weeks ago)
[Wed Sep 09 18:46:15.738581 2026] [security2:error] [pid 538797:tid 538797] [client 34.153.206.215:0 ...
show more
[Wed Sep 09 18:46:15.738581 2026] [security2:error] [pid 538797:tid 538797] [client 34.153.206.215:0] [client 34.153.206.215] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "pop-the-slots.com"] [uri "/.git/config"] [unique_id "aqGpd6OnKEv5_rDuvl84UwAAAAY"]
[Wed Sep 09 18:46:17.841673 2026] [security2:error] [pid 520265:tid 520265] [client 34.153.206.215:0] [client 34.153.206.215] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [
...
show less
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-09-09 10:52:10
(1 month ago)
Multiple WAF Violations
Web App Attack
๐ฎ๐น
VHosting
2026-09-09 09:30:04
(1 month ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-09 09:28:56
(1 month ago)
cloudlinux2 fail2ban: 2026-09-09 11:25:21,830 fail2ban.filter [1892]: INFO [plesk-proftpd ...
show more
cloudlinux2 fail2ban: 2026-09-09 11:25:21,830 fail2ban.filter [1892]: INFO [plesk-proftpd] Found 165.227.121.46 - 2026-09-09 11:25:21cloudlinux2 fail2ban: 2026-09-09 11:25:37,226 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 190.114.32.241 - 2026-09-09 11:25:37cloudlinux2 fail2ban: 2026-09-09 11:25:47,577 fail2ban.actions [1892]: NOTICE [plesk-modsecurity] Unban 34.81.220.73cloudlinux2 fail2ban: 2026-09-09 11:25:55,551 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 103.2.134.247 - 2026-09-09 11:25:55cloudlinux2 fail2ban: 2026-09-09 11:26:37,909 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 103.2.134.247 - 2026-09-09 11:26:37cloudlinux2 fail2ban: 2026-09-09 11:26:59,667 fail2ban.actions [1892]: NOTICE [plesk-modsecurity] Ban 103.2.134.247cloudlinux2 fail2ban: 2026-09-09 11:27:06,156 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 92.43.82.91 - 2026-09-09 11:27:05cloudlinux2 fail2ban: 2026-09-09 11:26:59,245 fail
show less
FTP Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-09 09:13:30
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.153.206.215 (215.206.153.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.153.206.215 (215.206.153.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 05:13:23.172734 2026] [security2:error] [pid 14717:tid 14717] [client 34.153.206.215:50278] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hongkonger.org"] [uri "/.git/config"] [unique_id "aqEjM5vhH77Ct6wKtIylOgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack