๐ฎ๐น
paoloartone
2026-07-22 05:00:21
(6 days ago)
Reverse proxy TCO: 2295 richieste malevole bloccate (scan/exploit/brute-force WordPress) il 21/07/20 ...
show more
Reverse proxy TCO: 2295 richieste malevole bloccate (scan/exploit/brute-force WordPress) il 21/07/2026.
show less
Web App Attack
Hacking
Port Scan
๐ฉ๐ช
macrob
2026-07-21 18:48:03
(6 days ago)
2026/07/21 18:48:01 [error] 2535537#2535537: *397008319 access forbidden by rule, client: 34.158.54. ...
show more
2026/07/21 18:48:01 [error] 2535537#2535537: *397008319 access forbidden by rule, client: 34.158.54.160, server: fn.binixo.es, request: "GET /.aws/config HTTP/2.0", host: "dashboard.fastcredit.net.ua"
2026/07/21 18:48:01 [error] 2535537#2535537: *397008322 access forbidden by rule, client: 34.158.54.160, server: fn.binixo.es, request: "GET /.aws/credentials HTTP/2.0", host: "dashboard.fastcredit.net.ua"
2026/07/21 18:48:01 [error] 2535537#2535537: *397008324 access forbidden by rule, client: 34.158.54.160, server: fn.binixo.es, request: "GET /src/.env HTTP/2.0", host: "dashboard.fastcredit.net.ua"
...
show less
Web App Attack
๐ซ๐ท
danirod
2026-07-21 18:08:08
(6 days ago)
34.158.54.160 - - [21/Jul/2026:18:08:07 +0000] "GET https://dashboard.makigas.es/phpinfo.php HTTP/2. ...
show more
34.158.54.160 - - [21/Jul/2026:18:08:07 +0000] "GET https://dashboard.makigas.es/phpinfo.php HTTP/2.0" 404 3684 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; MistralAI-User/1.0" 0.638
34.158.54.160 - - [21/Jul/2026:18:08:07 +0000] "GET https://dashboard.makigas.es/info.php HTTP/2.0" 404 3685 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ClaudeBot/1.0; +mailto:[email protected] " 0.577
34.158.54.160 - - [21/Jul/2026:18:08:07 +0000] "GET https://dashboard.makigas.es/i.php HTTP/2.0" 404 3726 "-" "anthropic-ai" 0.048
...
show less
Brute-Force
๐บ๐ธ
MaxSmartCode
2026-07-21 17:44:04
(6 days ago)
Credential brute-force attacks on webpage.
Brute-Force
SSH
๐ต๐ฑ
sefinek.net
2026-07-21 17:22:06
(6 days ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action: BLOCK | Protocol: HTTP/2 (GET) | Endpoint ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action: BLOCK | Protocol: HTTP/2 (GET) | Endpoint: /app/.env | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฌ๐ง
Rob Taylor
2026-07-21 16:37:00
(6 days ago)
Probing for sensitive files
Web App Attack
๐ฉ๐ช
macrob
2026-07-21 16:28:22
(6 days ago)
2026/07/21 16:28:20 [error] 2535542#2535542: *396653692 access forbidden by rule, client: 34.158.54. ...
show more
2026/07/21 16:28:20 [error] 2535542#2535542: *396653692 access forbidden by rule, client: 34.158.54.160, server: bin-spin.com, request: "GET /.bash_profile HTTP/1.1", host: "bin-spin.com"
2026/07/21 16:28:20 [error] 2535542#2535542: *396653693 access forbidden by rule, client: 34.158.54.160, server: bin-spin.com, request: "GET /.bashrc HTTP/1.1", host: "bin-spin.com"
2026/07/21 16:28:20 [error] 2535542#2535542: *396653694 access forbidden by rule, client: 34.158.54.160, server: bin-spin.com, request: "GET /.zshrc HTTP/1.1", host: "bin-spin.com"
...
show less
Web App Attack
๐ฟ๐ฆ
conure
2026-07-21 16:10:58
(6 days ago)
csagent: score 21.0: 404 noise floor x6, secrets grab x2; 1 domain(s) in 9s
Web App Attack
Anonymous
2026-07-21 15:32:38
(6 days ago)
34.158.54.160 - - [22/Jul/2026:00:32:37 +0900] "GET / HTTP/2.0" 403 376 "-" "Mozilla/5.0 (Windows NT ...
show more
34.158.54.160 - - [22/Jul/2026:00:32:37 +0900] "GET / HTTP/2.0" 403 376 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 YaBrowser/26.6.0.0 Safari/537.36"
34.158.54.160 - - [22/Jul/2026:00:32:37 +0900] "GET /config.json HTTP/2.0" 403 309 "-" "Mozilla/5.0 (compatible; Diffbot/1.0; +https://diffbot.com)"
34.158.54.160 - - [22/Jul/2026:00:32:37 +0900] "GET /wp-json HTTP/2.0" 403 309 "-" "anthropic-ai"
34.158.54.160 - - [22/Jul/2026:00:32:37 +0900] "GET /config/.env HTTP/2.0" 403 309 "-" "Mozilla/5.0 (compatible; GoogleOther; +http://www.google.com/bot.html)"
34.158.54.160 - - [22/Jul/2026:00:32:37 +0900] "GET /console HTTP/2.0" 403 309 "-" "Mozilla/5.0 (Linux; Android 14; 23021RAAEG) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Mobile Safari/537.36"
...
show less
Brute-Force
๐บ๐ฆ
URAN Publishing Service
2026-07-21 15:15:25
(6 days ago)
34.158.54.160 - - [21/Jul/2026:18:15:25 +0300] "GET /.env HTTP/1.1" 404 508 "-" "Mozilla/5.0 AppleWe ...
show more
34.158.54.160 - - [21/Jul/2026:18:15:25 +0300] "GET /.env HTTP/1.1" 404 508 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.3; +https://openai.com/gptbot)"
...
show less
Web App Attack
Anonymous
2026-07-21 14:40:01
(1 week ago)
| Suspicious URL access.
Web App Attack
Hacking
SQL Injection
๐ฎ๐ฉ
origrata
2026-07-21 14:27:25
(1 week ago)
[OGWAF] bad_reputation attack blocked | severity: high | GET / | UA: Mozilla/5.0 (iPad; CPU OS 17_7 ...
show more
[OGWAF] bad_reputation attack blocked | severity: high | GET / | UA: Mozilla/5.0 (iPad; CPU OS 17_7 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.7
show less
Web App Attack
Anonymous
2026-07-21 14:05:07
(1 week ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-21 13:47:58
(1 week ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
macrob
2026-07-21 13:24:33
(1 week ago)
2026/07/21 13:24:32 [error] 2535540#2535540: *396207209 access forbidden by rule, client: 34.158.54. ...
show more
2026/07/21 13:24:32 [error] 2535540#2535540: *396207209 access forbidden by rule, client: 34.158.54.160, server: bin-spin.com, request: "GET /.env HTTP/1.1", host: "bin-spin.com"
2026/07/21 13:24:32 [error] 2535540#2535540: *396207208 access forbidden by rule, client: 34.158.54.160, server: bin-spin.com, request: "GET /.gitlab-ci.yml HTTP/1.1", host: "bin-spin.com"
2026/07/21 13:24:32 [error] 2535540#2535540: *396207210 access forbidden by rule, client: 34.158.54.160, server: bin-spin.com, request: "GET /.env.example HTTP/1.1", host: "bin-spin.com"
...
show less
Web App Attack