🇫🇷
masterguru
2026-09-13 16:55:29
(1 hour ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
🇦🇺
paulshipley.com.au
2026-09-13 15:47:08
(2 hours ago)
[Mon Sep 14 01:47:08.034149 2026] [security2:error] [pid 931707] [client 34.158.29.8:55322] [client ...
show more
[Mon Sep 14 01:47:08.034149 2026] [security2:error] [pid 931707] [client 34.158.29.8:55322] [client 34.158.29.8] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "ccideas.com.au"] [uri "/"] [unique_id "aqbFfB-RTLcUInjZE45V7wAAAAg"]
...
show less
Web App Attack
Anonymous
2026-09-13 13:57:09
(4 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.158.29.8 (CH/Switzerland/8.29.158.34 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.158.29.8 (CH/Switzerland/8.29.158.34.bc.googleusercontent.com)
show less
SQL Injection
🇳🇱
Site.eu
2026-09-13 12:37:24
(6 hours ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-13 08:07:58
(10 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CH, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CH, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
🇮🇳
evicky2002
2026-09-13 06:00:01
(12 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
🇸🇪
vaia.cloud
2026-09-12 18:30:02
(1 day ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 16:28:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 12:28:43.435279 2026] [security2:error] [pid 2246:tid 2246] [client 34.158.29.8:60574] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blacktvnow.com.disenowebprofesional.com"] [uri "/.git/config"] [unique_id "aqV9u_g8LDva9eRArhhUiwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 15:26:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 11:26:24.586022 2026] [security2:error] [pid 12167:tid 12167] [client 34.158.29.8:55200] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blackstarmgmt.net"] [uri "/.git/config"] [unique_id "aqVvICKPHa5LU3WvX53-BwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 14:55:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 10:55:38.708889 2026] [security2:error] [pid 20294:tid 20294] [client 34.158.29.8:40416] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blacksheepoffroad.com"] [uri "/.git/config"] [unique_id "aqVn6mlmMlAhxDNtShAgFAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 14:16:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 10:16:03.927194 2026] [security2:error] [pid 18303:tid 18303] [client 34.158.29.8:45036] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blackriverarc.org"] [uri "/.git/config"] [unique_id "aqVeo0Lq_Tn1HarMVyIYNwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 12:07:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 08:07:33.024498 2026] [security2:error] [pid 10057:tid 10057] [client 34.158.29.8:60334] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blackmanfamily.com"] [uri "/.git/config"] [unique_id "aqVAhaZXIqwc4Paq9eVXVQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
agenciahypelab.com.br
2026-09-12 11:49:45
(1 day ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
🇺🇸
TPI-Abuse
2026-09-12 11:18:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 07:18:17.718456 2026] [security2:error] [pid 7782:tid 7782] [client 34.158.29.8:51668] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blackjobsnetwork.com"] [uri "/.git/config"] [unique_id "aqU0-SqG_2YTSX3-AW5D2AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 10:55:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.29.8 (8.29.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 06:55:20.841711 2026] [security2:error] [pid 29207:tid 29207] [client 34.158.29.8:53650] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brownbarn.com"] [uri "/.git/config"] [unique_id "aqUvmJ5TNf7daes932Fs8QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack