Anonymous
2026-09-03 06:55:04
(46 minutes ago)
Bot / scanning and/or hacking attempts: GET /api/.env HTTP/1.1, GET /private/.env HTTP/1.1, GET /.en ...
show more
Bot / scanning and/or hacking attempts: GET /api/.env HTTP/1.1, GET /private/.env HTTP/1.1, GET /.env.json HTTP/1.1, GET /backend/.env HTTP/1.1, GET /.env.yaml HTTP/1.1, GET /admin/.env HTTP/1.1, GET /database/.env HTTP/1.1, GET /.env.yml HTTP/1.1, GET /server/.env HTTP/1.1, GET /bootstrap/.env HTTP/1.1, GET /src/.env HTTP/1.1, GET /web/.env HTTP/1.1, GET /storage/.env HTTP/1.1, GET /application/.env HTTP/1.1, GET /core/.env HTTP/1.1, GET /apps/.env HTTP/1.1, GET /config/.env HTTP/1.1, GET /app/.env HTTP/1.1, GET /frontend/.env HTTP/1.1, GET /public/.env HTTP/1.1, GET /core/app/.env HTTP/1.1, GET /site/.env HTTP/1.1
show less
Hacking
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-03 04:20:02
(3 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 04:14:20
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.162.27.0 (0.27.162.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.27.0 (0.27.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 00:14:12.314537 2026] [security2:error] [pid 23304:tid 23304] [client 34.162.27.0:51158] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "catnameslist.com"] [uri "/.git/config"] [unique_id "apj0FElreQLi0Q5EP-_pzQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 03:42:43
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.162.27.0 (0.27.162.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.27.0 (0.27.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 23:42:36.258109 2026] [security2:error] [pid 4112545:tid 4112577] [client 34.162.27.0:45086] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "catislandrentals.com.nicholsinvest.com"] [uri "/.git/config"] [unique_id "apjsrMjNNWecyRyS98XyHwAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-09-03 03:06:06
(4 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-03 03:03:06
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.162.27.0 (0.27.162.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.27.0 (0.27.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 23:03:02.495697 2026] [security2:error] [pid 3056:tid 3056] [client 34.162.27.0:59990] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cathybermanmft.com"] [uri "/.git/config"] [unique_id "apjjZnZfpK5arvkuRkpbNwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 02:43:54
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.162.27.0 (0.27.162.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.27.0 (0.27.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 22:43:48.454000 2026] [security2:error] [pid 21565:tid 21565] [client 34.162.27.0:60788] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "catholicshopper.com"] [uri "/.git/config"] [unique_id "apje5GlI9-I0qUn0nyibGwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-03 01:32:21
(6 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 01:30:54
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.162.27.0 (0.27.162.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.27.0 (0.27.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:30:50.993477 2026] [security2:error] [pid 23890:tid 23890] [client 34.162.27.0:42248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "catherineclayton.com"] [uri "/.git/config"] [unique_id "apjNyjnbqphk9xEgIUxdswAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mhemart
2026-09-03 01:11:36
(6 hours ago)
Automated web application attack detected. Last URL: /administrator/.env. Attempts: 6.
Web App Attack
๐ซ๐ท
Octopuce
2026-09-03 00:56:40
(6 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 00:43:50
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.162.27.0 (0.27.162.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.27.0 (0.27.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 20:43:46.518570 2026] [security2:error] [pid 22105:tid 22105] [client 34.162.27.0:42998] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cathayexpress.com"] [uri "/.git/config"] [unique_id "apjCwuJPu9TeZUXSp1KKbAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-03 00:01:03
(7 hours ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
๐ฉ๐ช
big-cloud.nl
2026-09-02 19:55:55
(11 hours ago)
Try to access /.git/config
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-02 19:10:50
(12 hours ago)
Excessive 404/403 errors
Brute-Force