๐ฟ๐ฆ
conure
2026-07-22 12:11:14
(5 hours ago)
csagent: score 20.1: secrets grab x2, 404 noise floor x1; 2 domain(s) in 3s
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-07-22 05:14:13
(12 hours ago)
2 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐ฒ๐ฝ
octageeks.com
2026-07-22 04:18:29
(13 hours ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 00:40:15
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.16.199.97 (97.199.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.199.97 (97.199.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 20:40:07.812753 2026] [security2:error] [pid 64741:tid 64741] [client 34.16.199.97:35428] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.emelecsrl.com"] [uri "/.git/config"] [unique_id "amARZyxIuuizBZqefXM9ZwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
ELYAZ
2026-07-22 00:08:35
(17 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.16.199.97 (US/United States/97.199.1 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.16.199.97 (US/United States/97.199.16.34.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
๐บ๐ธ
mnsf
2026-07-22 00:05:06
(17 hours ago)
Abuse Detected (11)
Brute-Force
Web App Attack
Anonymous
2026-07-21 23:56:01
(17 hours ago)
Malicious activity detected
Hacking
Web App Attack
๐ณ๐ฑ
enpepet
2026-07-21 23:54:10
(17 hours ago)
GENERAL: parametres: [url:git=] UA: URL:/.git/config
Port Scan
Hacking
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-21 23:25:16
(18 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.16.199.97 (97.199.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.16.199.97 (97.199.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 19:25:09.028425 2026] [security2:error] [pid 833158:tid 833158] [client 34.16.199.97:49652] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.eliterailjourneys.hamiltonbookings.com"] [uri "/.git/config"] [unique_id "al__1Z6kun2jNbwo_RA8XgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-07-21 23:18:56
(18 hours ago)
cloudlinux2 fail2ban: 2026-07-22 01:14:24,024 fail2ban.filter [1927]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-07-22 01:14:24,024 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 34.16.199.97 - 2026-07-22 01:14:24cloudlinux2 fail2ban: 2026-07-22 01:14:36,003 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 45.130.83.143 - 2026-07-22 01:14:35cloudlinux2 fail2ban: 2026-07-22 01:14:36,106 fail2ban.actions [1927]: NOTICE [plesk-wordpress] Ban 45.130.83.143cloudlinux2 fail2ban: 2026-07-22 01:14:36,350 fail2ban.filter [1927]: INFO [recidive] Found 45.130.83.143 - 2026-07-22 01:14:36cloudlinux2 fail2ban: 2026-07-22 01:14:48,475 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 140.248.75.94 - 2026-07-22 01:14:48cloudlinux2 fail2ban: 2026-07-22 01:14:49,025 fail2ban.actions [1927]: NOTICE [plesk-modsecurity] Ban 140.248.75.94cloudlinux2 fail2ban: 2026-07-22 01:14:49,032 fail2ban.filter [1927]: INFO [recidive] Found 140.248.75.94 - 2026-07-22 01:14:49cloudlinux2 fail2ban: 2026-07-22 01:14:48,987 fail2ban.filter
show less
Web App Attack
๐ฑ๐ป
garmtech.com
2026-07-21 23:18:41
(18 hours ago)
IM360 WAF: Direct access to sensitive file or dotfile MV:/.git/config
Web App Attack
๐ฌ๐ง
consul.to
2026-07-21 23:14:19
(18 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 23:05:34
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.16.199.97 (97.199.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.199.97 (97.199.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 19:05:27.817821 2026] [security2:error] [pid 11148:tid 11148] [client 34.16.199.97:48236] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.elgarage.com.mx"] [uri "/.git/config"] [unique_id "al_7N3JAlOtfeNAGuHpLxgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-07-21 23:04:27
(18 hours ago)
Try to access /.git/config
Web App Attack
Anonymous
2026-07-21 22:55:02
(18 hours ago)
suspicious request in access.log
Web App Attack