🇺🇸
TPI-Abuse
2026-09-07 13:23:40
(16 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.159.30.254 (254.30.159.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.30.254 (254.30.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 09:23:35.896700 2026] [security2:error] [pid 18452:tid 18452] [client 34.159.30.254:41216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bervick.com"] [uri "/.git/config"] [unique_id "ap6616LkftGXM9-uwzHx5AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-07 12:35:06
(1 hour ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 12:00:53
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.159.30.254 (254.30.159.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.30.254 (254.30.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 08:00:46.264301 2026] [security2:error] [pid 19713:tid 19765] [client 34.159.30.254:52548] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bertdecoutere.name"] [uri "/.git/config"] [unique_id "ap6nbmeAISeWoIQ_UMZWWQAAAZU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 09:24:42
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.159.30.254 (254.30.159.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.30.254 (254.30.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 05:24:38.909273 2026] [security2:error] [pid 28879:tid 28879] [client 34.159.30.254:41108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bernescobar.com"] [uri "/.git/config"] [unique_id "ap6C1t9kSGH5nggr2E29VQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-07 09:20:02
(4 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 08:52:46
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.159.30.254 (254.30.159.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.30.254 (254.30.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 04:52:38.300000 2026] [security2:error] [pid 20976:tid 20976] [client 34.159.30.254:40050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bernardtardy.com"] [uri "/.git/config"] [unique_id "ap57Vv0S6kVCk3y9mXyjHwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 08:22:41
(5 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
🇦🇺
paulshipley.com.au
2026-09-07 07:24:46
(6 hours ago)
[Mon Sep 07 17:24:45.633301 2026] [security2:error] [pid 79351] [client 34.159.30.254:34618] [client ...
show more
[Mon Sep 07 17:24:45.633301 2026] [security2:error] [pid 79351] [client 34.159.30.254:34618] [client 34.159.30.254] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "bermanfamily.com.au"] [uri "/"] [unique_id "ap5mvdqCU_8XohwlYpZmpwAAAAA"]
...
show less
Web App Attack
🇫🇷
Octopuce
2026-09-07 07:01:54
(6 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
🇩🇪
FeG Deutschland
2026-09-07 06:16:45
(7 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
Anonymous
2026-09-06 23:27:12
(14 hours ago)
Bot / seems abusive / Apache connections: 40
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
🇫🇷
Stara
2026-09-06 20:52:55
(16 hours ago)
ModSecurity detected web attack - .env/config probing or SQLi/Code injection (Rule 949110)
Brute-Force
SSH
Web App Attack
🇧🇪
cmbplf
2026-09-06 20:12:12
(17 hours ago)
19.029 requests in 1 hour (1mo4w2h)
Brute-Force
Bad Web Bot
🇳🇱
Site.eu
2026-09-06 19:26:23
(18 hours ago)
Excessive multi-domain requests
Brute-Force
🇳🇱
Savvii
2026-09-06 19:15:34
(18 hours ago)
20 attempts against mh-misbehave-ban on yeti
Brute-Force
Bad Web Bot
Web App Attack