๐บ๐ธ
TPI-Abuse
2026-09-23 12:17:08
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.16.149 (149.16.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.16.149 (149.16.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 08:17:03.129706 2026] [security2:error] [pid 4997:tid 4997] [client 34.175.16.149:55242] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bigskyprints.com"] [uri "/backend/.git/config"] [unique_id "arPDP7sFWAdbwNLItZeuKgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-23 11:34:02
(2 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ต๐ฑ
Budyn
2026-09-23 11:28:08
(2 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: beszel.budyn.wtf | URI: /.git/config | UA: crusader-worker/1.0 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 11:15:00
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.16.149 (149.16.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.16.149 (149.16.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 07:14:53.619843 2026] [security2:error] [pid 25207:tid 25207] [client 34.175.16.149:42204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bennoyes.com.arsenaultartistmanagement.com"] [uri "/public/.git/config"] [unique_id "arO0rQyQa_3mlfxCCXs9gAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-23 09:59:20
(4 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 08:40:30
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.16.149 (149.16.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.16.149 (149.16.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 04:40:26.869736 2026] [security2:error] [pid 30109:tid 30109] [client 34.175.16.149:53650] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "azfilmguild.org"] [uri "/app/.git/config"] [unique_id "arOQekCFj8vu0wJzH5zuPwAAADo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Mundo Bueno
2026-09-23 08:06:41
(6 hours ago)
[ISILIA Protection v2.3] Tentative d'accรจs: /.git/config [RATE LIMITED - 1800s quarantine] | Pays: E ...
show more
[ISILIA Protection v2.3] Tentative d'accรจs: /.git/config [RATE LIMITED - 1800s quarantine] | Pays: ES | UA: crusader-worker/1.0
show less
Hacking
Web App Attack
๐ฉ๐ช
seal
2026-09-23 06:08:24
(8 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
SSH
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-23 03:51:49
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.16.149 (149.16.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.16.149 (149.16.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 23:51:43.408940 2026] [security2:error] [pid 1933:tid 1961] [client 34.175.16.149:42398] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ardentsi.com"] [uri "/site/.git/config"] [unique_id "arNMz8kfN7DPAcmLhuBplQAAAVI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
Origon
2026-09-23 03:35:28
(10 hours ago)
http-sensitive-files - IP: 34.175.16.149 - time="2026-09-23T05:35:28+02:00" level=info msg="(555f66 ...
show more
http-sensitive-files - IP: 34.175.16.149 - time="2026-09-23T05:35:28+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 34.175.16.149 (ES/396982) : 4h ban on Ip 34.175.16.149" module=db
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 22:07:45
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.16.149 (149.16.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.16.149 (149.16.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 18:07:40.755298 2026] [security2:error] [pid 5835:tid 5835] [client 34.175.16.149:45074] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "albrittonmcclain.com"] [uri "/wordpress/.git/config"] [unique_id "arL8LK8_uP8jr-EPcMj6tgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-22 21:48:28
(16 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-22 21:42:04
(16 hours ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
TheDjRider
2026-09-22 19:29:21
(18 hours ago)
CrowdSec detected Web application reconnaissance. Scenario: local/framework-recon. Automatic ban tri ...
show more
CrowdSec detected Web application reconnaissance. Scenario: local/framework-recon. Automatic ban triggered. Detection time (UTC): 2026-09-22T19:29:19.209845909Z. Context: http_status=302
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 17:54:42
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.16.149 (149.16.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.16.149 (149.16.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:54:36.425434 2026] [security2:error] [pid 17120:tid 17120] [client 34.175.16.149:50888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aaronnosan.com"] [uri "/www/.git/config"] [unique_id "arLA3CqbCgyuPh0Lw09ZzgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack