πΊπΈ
WellSpring
2026-08-20 12:17:25
(36 minutes ago)
env leak on 303.today/backend/.env β WellSpr.ing/NetSentinel civic-AI security layer
Web App Attack
π«π·
dynamix
2026-08-20 12:04:16
(50 minutes ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-20 10:40:36
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.168.62.35 (35.62.168.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.168.62.35 (35.62.168.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 06:40:32.865169 2026] [security2:error] [pid 26653:tid 26653] [client 34.168.62.35:6754] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eastsidenotary.com"] [uri "/static../.env"] [unique_id "aobZoLPMo7kywrAlBX9aCwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-20 09:58:12
(2 hours ago)
(mod_security) mod_security (id:211190) triggered by 34.168.62.35 (35.62.168.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:211190) triggered by 34.168.62.35 (35.62.168.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 05:58:05.338381 2026] [security2:error] [pid 28264:tid 28264] [client 34.168.62.35:5582] ModSecurity: Access denied with code 403 (phase 2). Match of "contains cpanel" against "REQUEST_URI" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "55"] [id "211190"] [rev "9"] [msg "COMODO WAF: Remote File Access Attempt||easternimport.com|F|2"] [data "Matched Data: /etc/ found within REQUEST_URI: /download?file=../../../../etc/passwd"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "easternimport.com"] [uri "/download"] [unique_id "aobPrXOY2zp0_ONTnyMdCwAAAIc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
Aetherweb Ark
2026-08-20 09:17:25
(3 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.168.62.35 (US/United States/35.62.168.34.bc. ...
show more
(mod_security) mod_security (id:949110) triggered by 34.168.62.35 (US/United States/35.62.168.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
π·πΊ
avaio-media
2026-08-20 07:47:20
(5 hours ago)
Brute-Force
π«π·
lindi
2026-08-20 07:32:52
(5 hours ago)
Probing for resource vulnerabilities
...
Web Spam
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
π³π±
Mangelot Hosting
2026-08-20 07:31:15
(5 hours ago)
(modsecurity) srv103 ModSecurity 34.168.62.35 (US/United States/35.62.168.34.bc.googleusercontent.co ...
show more
(modsecurity) srv103 ModSecurity 34.168.62.35 (US/United States/35.62.168.34.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
πͺπΈ
masterguru
2026-08-20 07:18:23
(5 hours ago)
Inbound Anomaly Score Exceeded (Total Score: 10). Operator GE matched 5 at TX:anomaly_score. (949110 ...
show more
Inbound Anomaly Score Exceeded (Total Score: 10). Operator GE matched 5 at TX:anomaly_score. (949110-122)
show less
Hacking
π¬π§
Apache
2026-08-20 07:07:38
(5 hours ago)
(mod_security) mod_security (id:931100) triggered by 34.168.62.35 (US/United States/35.62.168.34.bc. ...
show more
(mod_security) mod_security (id:931100) triggered by 34.168.62.35 (US/United States/35.62.168.34.bc.googleusercontent.com): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
πΊπΈ
mnsf
2026-08-20 07:05:04
(5 hours ago)
Too many Status 40X (11)
Scanning/Probing (12)
Brute-Force
Web App Attack
π³π±
Savvii
2026-08-20 06:34:52
(6 hours ago)
20 attempts against mh-misbehave-ban on ec102942
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-20 06:09:35
(6 hours ago)
(mod_security) mod_security (id:210580) triggered by 34.168.62.35 (35.62.168.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210580) triggered by 34.168.62.35 (35.62.168.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 02:09:29.373518 2026] [security2:error] [pid 1186:tid 1186] [client 34.168.62.35:46442] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "proc/self/environ" at ARGS:url. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "57"] [id "210580"] [rev "2"] [msg "COMODO WAF: OS File Access Attempt||www.liftreading.com|F|2"] [data "Matched Data: proc/self/environ found within ARGS:url: file:/proc/self/environ"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "www.liftreading.com"] [uri "/read"] [unique_id "aoaaGejdTC21NOd1N_hRtQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Alboweb B.V.
2026-08-20 05:11:04
(7 hours ago)
Bad web bot activity detected by Fail2Ban in plesk-apache-badbot jail
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-08-20 04:49:38
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.168.62.35 (35.62.168.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.168.62.35 (35.62.168.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 00:49:33.417737 2026] [security2:error] [pid 31677:tid 31677] [client 34.168.62.35:50388] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kwcccarshow.com"] [uri "/media../.env"] [unique_id "aoaHXaY4_xaBv9stAdAzEAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack