๐ณ๐ฟ
Antinson
2026-09-02 08:42:29
(8 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-02 05:59:23
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.171.173.88 (88.173.171.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.171.173.88 (88.173.171.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:59:16.855612 2026] [security2:error] [pid 10048:tid 10048] [client 34.171.173.88:49628] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.gibertauditors.com"] [uri "/wordpress/.git/config"] [unique_id "ape7NPC2ijiHAHKMB6VS5QAAADo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-02 05:49:52
(10 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /site/.git/config (+11 more) | 2026-09-02 05:49 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 05:30:09
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.171.173.88 (88.173.171.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.171.173.88 (88.173.171.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:30:01.363545 2026] [security2:error] [pid 13114:tid 13114] [client 34.171.173.88:51590] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.soviaenterprises.com"] [uri "/www/.git/config"] [unique_id "ape0WYQACcD6M6FSCwqlfwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ddobko
2026-09-02 04:46:00
(12 hours ago)
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 04:39:44
(12 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 04:36:27
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.171.173.88 (88.173.171.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.171.173.88 (88.173.171.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:36:21.986752 2026] [security2:error] [pid 1894:tid 1894] [client 34.171.173.88:33440] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.claireashtontherapy.com"] [uri "/src/.git/config"] [unique_id "apenxR9GLxd3oRdIiMpFDQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 04:18:46
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.171.173.88 (88.173.171.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.171.173.88 (88.173.171.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:18:40.138375 2026] [security2:error] [pid 18772:tid 18786] [client 34.171.173.88:44974] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dreyerlabs.com"] [uri "/public/.git/config"] [unique_id "apejoJQ9EJ8_DwdF1qJ6DAAAAMw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 02:24:35
(14 hours ago)
GET /.git/config HTTP/1.1
...
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-02 02:20:01
(14 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 00:44:17
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.171.173.88 (88.173.171.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.171.173.88 (88.173.171.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 20:44:11.677298 2026] [security2:error] [pid 6853:tid 6853] [client 34.171.173.88:40198] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "goepf.com"] [uri "/htdocs/.git/config"] [unique_id "apdxW3FEFq2dg6xoPrc81wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 00:41:32
(16 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.171.173.88 (US/United States/88.17 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.171.173.88 (US/United States/88.173.171.34.bc.googleusercontent.com): 2 in the last 3600 secs (0-196)
show less
Hacking
Anonymous
2026-09-01 22:14:35
(18 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 21:06:24
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.171.173.88 (88.173.171.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.171.173.88 (88.173.171.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 17:06:18.067669 2026] [security2:error] [pid 3093:tid 3093] [client 34.171.173.88:33284] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "offbeatcompassion.com"] [uri "/var/www/.git/config"] [unique_id "apc-Si-rguDF24xfWRTjfgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 19:11:21
(21 hours ago)
Scanner hitting /backend/.git/config on narkow.dev (GOOGL-2) โ aaguard
Brute-Force
Port Scan