๐บ๐ธ
TPI-Abuse
2026-08-29 02:33:05
(31 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 22:32:59.863808 2026] [security2:error] [pid 31986:tid 31986] [client 34.156.88.211:42722] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.topografiazgs.com.disenowebprofesional.com"] [uri "/src/.git/config"] [unique_id "apJE2zKu7CSGQMsG2ewoqgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-28 23:56:57
(3 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /backend/.git/config (+11 more) | 2026-08-28 23:56 UTC
show less
Hacking
Web App Attack
Anonymous
2026-08-28 15:29:10
(11 hours ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-28 14:49:04
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 10:48:59.198752 2026] [security2:error] [pid 18475:tid 18475] [client 34.156.88.211:52102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yongmeihu.com"] [uri "/api/.git/config"] [unique_id "apGf27u8u2k6kdJJg_YZ1gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 14:25:21
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 10:25:16.444298 2026] [security2:error] [pid 760:tid 760] [client 34.156.88.211:45788] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.entertainer-review.com.exotic-dancers-los-angeles.com"] [uri "/html/.git/config"] [unique_id "apGaTO8MXHIjSANDKS5w1wAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 12:39:45
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 08:39:38.246056 2026] [security2:error] [pid 3763:tid 3763] [client 34.156.88.211:55766] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.darkstarsystems.net"] [uri "/app/.git/config"] [unique_id "apGBisFr6ucr4IUsFcJV8AAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-27 22:01:02
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-26.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-27 16:43:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:43:39.024995 2026] [security2:error] [pid 23922:tid 24036] [client 34.156.88.211:42698] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aapmglobal.com"] [uri "/htdocs/.git/config"] [unique_id "apBpO3qMvx2qG4D9bQedvAAAAlY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-27 12:35:23
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐ซ๐ท
LRob
2026-08-27 11:23:45
(1 day ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /app/.git/config | 2026-08-27 11:23 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 10:24:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:24:11.432932 2026] [security2:error] [pid 24391:tid 24391] [client 34.156.88.211:41324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.water.ic1.biz"] [uri "/var/www/.git/config"] [unique_id "apAQSxDvUiDIk_dnkUi6YQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-27 10:15:02
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 09:37:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.156.88.211 (211.88.156.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 05:37:32.698533 2026] [security2:error] [pid 2278206:tid 2278281] [client 34.156.88.211:50348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.livethedream.richardleeweatherman.com"] [uri "/site/.git/config"] [unique_id "apAFXBrxRNAlh6AoP1TbRgAAAc0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-08-27 09:16:04
(1 day ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
๐ซ๐ฎ
paissangroup
2026-08-27 00:56:37
(2 days ago)
Multiple WAF Violations
Web App Attack