🇩🇪
webanyone
2026-09-10 22:46:40
(5 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
🇫🇷
dynamix
2026-09-10 20:46:32
(7 hours ago)
Multiple WAF Violations
Web App Attack
🇬🇧
consul.to
2026-09-10 14:17:53
(13 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-10 13:26:18
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.154.150.234 (234.150.154.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.150.234 (234.150.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 09:26:13.745166 2026] [security2:error] [pid 27327:tid 27327] [client 34.154.150.234:59132] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arborterra.org"] [uri "/.git/config"] [unique_id "aqKv9RGDEr3OU7H4qt53fgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-10 13:10:05
(14 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇳🇱
Site.eu
2026-09-10 12:04:02
(16 hours ago)
Excessive multi-domain requests
Brute-Force
🇩🇪
Hazzard
2026-09-10 11:04:34
(17 hours ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
Anonymous
2026-09-10 10:25:02
(17 hours ago)
suspicious request in access.log
Web App Attack
🇦🇺
aranguren.org
2026-09-10 09:34:09
(18 hours ago)
34.154.150.234 - - [10/Sep/2026:19:34:05 +1000] "GET /.git/config HTTP/1.1" 404 985 "-" "Mozilla/5.0 ...
show more
34.154.150.234 - - [10/Sep/2026:19:34:05 +1000] "GET /.git/config HTTP/1.1" 404 985 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.154.150.234 - - [10/Sep/2026:19:34:07 +1000] "GET /.env HTTP/1.1" 404 985 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.154.150.234 - - [10/Sep/2026:19:34:07 +1000] "GET /.env.local HTTP/1.1" 404 985 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.154.150.234 - - [10/Sep/2026:19:34:07 +1000] "GET /.env.production HTTP/1.1" 404 985 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.154.150.234 - - [10/Sep/2026:19:34:08 +1000] "GET /.env.staging HTTP/1.1" 404 985 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Ge
...
show less
Bad Web Bot
🇳🇱
Site.eu
2026-09-10 09:02:36
(19 hours ago)
Excessive 404/403 errors
Brute-Force
🇪🇸
masterguru
2026-09-10 08:30:47
(19 hours ago)
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110- ...
show more
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110-122)
show less
Hacking
🇷🇴
clauss
2026-09-10 08:19:39
(19 hours ago)
34.154.150.234 - - [10/Sep/2026:11:19:39 +0300] "GET /phpinfo.php HTTP/2.0" 404 20 "-" "Mozilla/5.0 ...
show more
34.154.150.234 - - [10/Sep/2026:11:19:39 +0300] "GET /phpinfo.php HTTP/2.0" 404 20 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.154.150.234 - - [10/Sep/2026:11:19:39 +0300] "GET /info.php HTTP/2.0" 404 20 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-10 07:55:31
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.154.150.234 (234.150.154.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.150.234 (234.150.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 03:55:23.569914 2026] [security2:error] [pid 27889:tid 27889] [client 34.154.150.234:33002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arabou.co"] [uri "/.git/config"] [unique_id "aqJia6nOLnxvZLO0HP-JygAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-10 06:46:20
(21 hours ago)
Scanner hitting /.git/config on ara-oman.com (GOOGL-2) — aaguard
Brute-Force
Port Scan
🇮🇹
VHosting
2026-09-10 03:45:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack