π¨π
m_vlasov
2026-06-16 23:02:24
(13 hours ago)
SSH/Telnet honeypot: 0 login attempts, 0 sessions, 0 shell commands.
Hacking
π©πͺ
paissangroup
2026-06-15 03:41:09
(2 days ago)
Multiple WAF Violations
Web App Attack
π³π±
Savvii
2026-06-15 03:26:10
(2 days ago)
20 attempts against mh-misbehave-ban on eris
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-15 03:08:41
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.162.143.227 (227.143.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.143.227 (227.143.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:08:35.988131 2026] [security2:error] [pid 26119:tid 26119] [client 34.162.143.227:53006] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gabbyspetnanny.com"] [uri "/web/.git/config"] [unique_id "ai9ss_jOxpPpasCR3jt7AQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-06-15 02:07:03
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-15 01:00:22
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.162.143.227 (227.143.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.143.227 (227.143.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:00:18.335098 2026] [security2:error] [pid 15935:tid 15935] [client 34.162.143.227:35622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.translation.cspminc.com"] [uri "/.git/config"] [unique_id "ai9OojXFPsHPT7pjdf3pHQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 00:22:43
(2 days ago)
wp admin page access attempt
...
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-15 00:05:41
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.162.143.227 (227.143.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.143.227 (227.143.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:05:36.475263 2026] [security2:error] [pid 8487:tid 8487] [client 34.162.143.227:43870] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.palmerattaway.com.intothebigempty.com"] [uri "/backend/.git/config"] [unique_id "ai9B0ApRG2h8VFKDhkNDiQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-06-15 00:01:46
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
π©πͺ
strxmpp
2026-06-15 00:01:24
(2 days ago)
34.162.143.227 - - [15/Jun/2026:02:01:21 +0200] "GET /src/.git/config HTTP/1.1" 404 4555 "-" "Mozill ...
show more
34.162.143.227 - - [15/Jun/2026:02:01:21 +0200] "GET /src/.git/config HTTP/1.1" 404 4555 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_2) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.1 Safari/605.1.15"
...
show less
Bad Web Bot
π¨π
Origon
2026-06-14 23:00:53
(2 days ago)
http-sensitive-files - IP: 34.162.143.227 - time="2026-06-15T01:00:52+02:00" level=info msg="(555f6 ...
show more
http-sensitive-files - IP: 34.162.143.227 - time="2026-06-15T01:00:52+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 34.162.143.227 (US/396982) : 4h ban on Ip 34.162.143.227" module=db
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-14 22:07:00
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.162.143.227 (227.143.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.143.227 (227.143.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:06:52.015359 2026] [security2:error] [pid 22277:tid 22277] [client 34.162.143.227:56260] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.isyourcompanysafe.com"] [uri "/app/.git/config"] [unique_id "ai8l_GYRH_BCFu_S1HlMAwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
e.fierstra
2026-06-14 22:01:40
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-06-14 22:01:36
(2 days ago)
Auto-ban: >3000 req/min op 2026-06-14
Web App Attack
SSH
Hacking
πΊπΈ
omc
2026-06-14 21:51:38
(2 days ago)
Banned IP [QC]. GET /htdocs/.git/config [Q4].
Bad Web Bot