๐ซ๐ฎ
oh.mg
2026-09-01 12:38:23
(1 day ago)
[Tue Sep 01 14:38:22.992738 2026] [security2:error] [pid 2029959:tid 2029979] [client 34.176.229.135 ...
show more
[Tue Sep 01 14:38:22.992738 2026] [security2:error] [pid 2029959:tid 2029979] [client 34.176.229.135:38340] [client 34.176.229.135] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 50)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "en.social.mmn.on.ca"] [uri "/"] [unique_id "apbHPijgTTFbcm6PcFXG-QAAAFI"]
[Tue Sep 01 14:38:23.236052 2026] [security2:error] [pid 2029959:tid 2029985] [client 34.176.229.135:38340] [client 34.176.229.135] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 50)"] [ver "OWASP_CRS/4.10.0-dev"
...
show less
Web App Attack
Bad Web Bot
๐ธ๐ช
vaia.cloud
2026-09-01 01:50:04
(1 day ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-08-31 09:26:51
(2 days ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
๐ณ๐ฑ
e.fierstra
2026-08-31 09:19:11
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-31 08:46:59
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐บ๐ฆ
Olexiy Backend
2026-08-31 08:34:41
(2 days ago)
34.176.229.135
...
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 08:18:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.176.229.135 (135.229.176.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.229.135 (135.229.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:18:33.199342 2026] [security2:error] [pid 11131:tid 11131] [client 34.176.229.135:49496] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "estellenussbaum.com"] [uri "/.git/config"] [unique_id "apU42Sw4i0pzwAm8W8rGvAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-31 08:15:39
(2 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 07:36:35
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.176.229.135 (135.229.176.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.229.135 (135.229.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 03:36:29.146959 2026] [security2:error] [pid 3562:tid 3562] [client 34.176.229.135:39488] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "estatemartinc.com"] [uri "/.git/config"] [unique_id "apUu_USSEKWeOrXa3YRgmAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-08-31 07:27:28
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ช๐ธ
alferez
2026-08-31 07:03:00
(2 days ago)
Searching .(env|sql|zip|tar|rar) files
Hacking
Exploited Host
Web App Attack
๐ธ๐ฌ
naveeddaros
2026-08-31 05:27:48
(2 days ago)
HTTP Flood DDoS attack detected
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-31 05:21:38
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.176.229.135 (135.229.176.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.229.135 (135.229.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 01:21:31.846266 2026] [security2:error] [pid 11515:tid 11515] [client 34.176.229.135:45408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "essentialee.com"] [uri "/.git/config"] [unique_id "apUPW1mVjf5jEFG6-QdHwwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
pipeline.es
2026-08-31 05:02:02
(2 days ago)
Web scanning / probing for vulnerable paths | URL: /laravel5/.env | Evidence: essencitravel.com 34.1 ...
show more
Web scanning / probing for vulnerable paths | URL: /laravel5/.env | Evidence: essencitravel.com 34.176.229.135 - - [31/Aug/2026:07:01:39 +0200] \"GET /laravel5/.env HTTP/1.1\" 404 20587 \"-\" \"Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36\" GEOIP_COUNTRY_CODE=CL | ASN: GOOGLE-CLOUD-PLATFORM | Country: CL
show less
Port Scan
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-31 04:39:36
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack