๐ฉ๐ช
Petros Stefanakis
2026-09-16 05:50:46
(2 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.163.64.76 (FR/France/76.64.163.34.bc ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.163.64.76 (FR/France/76.64.163.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
WPJoe
2026-09-16 05:12:56
(3 hours ago)
34.163.64.76 - - [16/Sep/2026:05:12:55 +0000] "GET /.git/config HTTP/1.1" 403 465 "-" "Mozilla/5.0 ( ...
show more
34.163.64.76 - - [16/Sep/2026:05:12:55 +0000] "GET /.git/config HTTP/1.1" 403 465 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.163.64.76 - - [16/Sep/2026:05:12:56 +0000] "GET /.env HTTP/1.1" 403 465 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
Bad Web Bot
๐จ๐ญ
๐จ๐ญ Hosting
2026-09-16 05:10:20
(3 hours ago)
Automated WAF report: 600-700 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 04:24:48
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.163.64.76 (76.64.163.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.64.76 (76.64.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 00:24:41.820301 2026] [security2:error] [pid 28145:tid 28167] [client 34.163.64.76:54796] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "buick-reatta.com"] [uri "/.git/config"] [unique_id "aqoaCUw83iIsP2vFvOySmwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-09-16 04:05:38
(4 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ซ๐ท
pawel
2026-09-16 03:43:24
(4 hours ago)
[Wed Sep 16 05:43:17.670164 2026] [php:error] [pid 2453674] [client 34.163.64.76:43676] script '/hom ...
show more
[Wed Sep 16 05:43:17.670164 2026] [php:error] [pid 2453674] [client 34.163.64.76:43676] script '/home/pawel/bugtracker.rainsted.com/phpinfo.php' not found or unable to stat
[Wed Sep 16 05:43:17.718353 2026] [php:error] [pid 2453674] [client 34.163.64.76:43676] script '/home/pawel/bugtracker.rainsted.com/info.php' not found or unable to stat
[Wed Sep 16 05:43:17.739183 2026] [php:error] [pid 2453674] [client 34.163.64.76:43676] script '/home/pawel/bugtracker.rainsted.com/php.php' not found or unable to stat
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
Feelautom
2026-09-16 03:41:08
(4 hours ago)
[FeelAutom Auto-Ban] PathScan: /.env.backup (Score: 200)
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-16 02:55:14
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.163.64.76 (76.64.163.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.64.76 (76.64.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 22:55:06.135321 2026] [security2:error] [pid 18833:tid 18833] [client 34.163.64.76:38408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "buggyshop.org"] [uri "/.git/config"] [unique_id "aqoFCueB6XqpQbbvljLT8QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 01:16:23
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.163.64.76 (76.64.163.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.64.76 (76.64.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 21:16:17.804052 2026] [security2:error] [pid 21158:tid 21158] [client 34.163.64.76:40400] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "buffaloweddingdeejay.com"] [uri "/.git/config"] [unique_id "aqnt4XWG8ACptxIK7a1w0AAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-15 23:47:54
(8 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 22:23:22
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.163.64.76 (76.64.163.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.64.76 (76.64.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 18:23:16.905194 2026] [security2:error] [pid 8858:tid 8858] [client 34.163.64.76:47234] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "buenasfrecuencias.com"] [uri "/.git/config"] [unique_id "aqnFVJQ9iM49yAMiWXqw-wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FD-IX
2026-09-15 21:47:04
(10 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ฉ๐ช
filstal.org
2026-09-15 21:46:19
(10 hours ago)
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels an ...
show more
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels and known vulnerability paths.
show less
Hacking
Brute-Force
Web App Attack
๐ต๐ฑ
Budyn
2026-09-15 21:38:30
(10 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: budyn.ovh | URI: /.git/config | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-09-15 21:20:15
(10 hours ago)
Multiple WAF Violations
Web App Attack