๐ฉ๐ช
Blexyel
2026-09-19 12:20:16
(5 hours ago)
34.163.27.54 - - [19/Sep/2026:14:20:14 +0200] "GET /.git/config HTTP/1.1" 302 57 "-" "Mozilla/5.0 (W ...
show more
34.163.27.54 - - [19/Sep/2026:14:20:14 +0200] "GET /.git/config HTTP/1.1" 302 57 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐ต๐ฑ
Budyn
2026-09-19 12:16:52
(5 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: grafana.astropot.space | URI: /.git/config | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-19 05:05:38
(12 hours ago)
Excessive 404/403 errors
Brute-Force
๐ซ๐ฎ
paissangroup
2026-09-19 01:51:51
(15 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 00:42:55
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.163.27.54 (54.27.163.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.27.54 (54.27.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 20:42:48.944645 2026] [security2:error] [pid 13603:tid 13620] [client 34.163.27.54:48602] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "catslife.net.piazza9.com"] [uri "/.git/config"] [unique_id "aq3aiBVJqkwsg-dz2bJ24QAAAIs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-18 21:06:49
(20 hours ago)
[ti-30al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-30al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.163.27.54 - - [18/Sep/2026:23:06:43 +0200] "GET /.git/config HTTP/1.1" 403 2145 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-18 21:05:02
(20 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 21:01:04
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.163.27.54 (54.27.163.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.27.54 (54.27.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 17:00:57.080402 2026] [security2:error] [pid 19887:tid 19887] [client 34.163.27.54:39992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "catnameslist.com"] [uri "/.git/config"] [unique_id "aq2mic46p-JdHI0aYm1wMwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 20:33:41
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.163.27.54 (54.27.163.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.27.54 (54.27.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 16:33:37.980974 2026] [security2:error] [pid 6340:tid 6362] [client 34.163.27.54:47920] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "catislandrentals.com.nicholsinvest.com"] [uri "/.git/config"] [unique_id "aq2gIVk1jAoa0Ih6UkWgWgAAAM8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 19:54:12
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.163.27.54 (54.27.163.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.27.54 (54.27.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 15:54:05.485756 2026] [security2:error] [pid 26638:tid 26638] [client 34.163.27.54:38034] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cathrynn.com"] [uri "/.git/config"] [unique_id "aq2W3Q_m4f7S0Oh-j7ouzgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 19:34:48
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.163.27.54 (54.27.163.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.27.54 (54.27.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 15:34:44.301629 2026] [security2:error] [pid 20198:tid 20198] [client 34.163.27.54:49500] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "catholicholidaycards.com.piratecostumesonline.com"] [uri "/.git/config"] [unique_id "aq2SVCZYwFsFW52kPu8hAgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 18:42:34
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.163.27.54 (54.27.163.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.27.54 (54.27.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 14:42:31.003423 2026] [security2:error] [pid 12370:tid 12370] [client 34.163.27.54:60836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "catherineclayton.com"] [uri "/.git/config"] [unique_id "aq2GFwIEsOs-bkTLQ-36dwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mhemart
2026-09-18 18:31:29
(23 hours ago)
Automated web application attack detected. Last URL: /administrator/.env. Attempts: 6.
Web App Attack
๐ซ๐ท
masterguru
2026-09-18 17:26:42
(1 day ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
๐ณ๐ฑ
debestelapp
2026-09-18 16:50:12
(1 day ago)
Web App Attack