๐ณ๐ฑ
Site.eu
2026-08-31 22:30:06
(1 month ago)
Excessive multi-domain requests
Brute-Force
๐ฎ๐ฉ
rvsdi
2026-08-31 16:04:33
(1 month ago)
[OGWAF] path_traversal attack blocked | severity: high | GET /.git/config | UA: Mozilla/5.0 (X11; Li ...
show more
[OGWAF] path_traversal attack blocked | severity: high | GET /.git/config | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.3
show less
Hacking
Web App Attack
Anonymous
2026-08-31 13:46:43
(1 month ago)
34.176.243.106 - - [31/Aug/2026:15:46:19 +0200] "GET /.git/config HTTP/1.1" 403 626 "-" "Mozilla/5.0 ...
show more
34.176.243.106 - - [31/Aug/2026:15:46:19 +0200] "GET /.git/config HTTP/1.1" 403 626 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.176.243.106 - - [31/Aug/2026:15:46:20 +0200] "GET /.env HTTP/1.1" 403 626 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.176.243.106 - - [31/Aug/2026:15:46:20 +0200] "GET /.env.local HTTP/1.1" 403 626 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.176.243.106 - - [31/Aug/2026:15:46:20 +0200] "GET /.env.production HTTP/1.1" 403 626 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.176.243.106 - - [31/Aug/2026:15:46:20 +0200] "GET /.env.staging HTTP/1.1" 403 626 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/5
...
show less
DDoS Attack
๐ง๐ช
Savvii
2026-08-31 12:44:06
(1 month ago)
20 attempts against mh-misbehave-ban on exodus
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 12:28:53
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.176.243.106 (106.243.176.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.243.106 (106.243.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 08:28:48.649965 2026] [security2:error] [pid 15328:tid 15328] [client 34.176.243.106:44464] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "exners.com"] [uri "/.git/config"] [unique_id "apVzgJ-_pUlmgFgldJSeHgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-08-31 11:46:17
(1 month ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
๐ณ๐ฟ
Antinson
2026-08-31 10:51:37
(1 month ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-31 10:19:46
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.176.243.106 (106.243.176.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.243.106 (106.243.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 06:19:40.505724 2026] [security2:error] [pid 3720756:tid 3720785] [client 34.176.243.106:55040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "exedesalesteam.com"] [uri "/.git/config"] [unique_id "apVVPCXDYD09BveEjki7GAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 09:59:12
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.176.243.106 (106.243.176.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.243.106 (106.243.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 05:59:06.917068 2026] [security2:error] [pid 24187:tid 24202] [client 34.176.243.106:34616] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "executive.bz"] [uri "/.git/config"] [unique_id "apVQalCgMGAW9VYw2XdY3AAAAME"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 07:55:18
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.176.243.106 (106.243.176.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.243.106 (106.243.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 03:55:12.792968 2026] [security2:error] [pid 5726:tid 5726] [client 34.176.243.106:38666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "exchange.ic1.solutions.ic1.biz"] [uri "/.git/config"] [unique_id "apUzYJhsOu49M6_DEUPHsgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
tall1oN
2026-08-31 06:39:20
(1 month ago)
34.176.243.106 - - [31/Aug/2026:08:07:11 +0200] "GET /.git/config HTTP/2.0" 200 2229901 "-" "Mozilla ...
show more
34.176.243.106 - - [31/Aug/2026:08:07:11 +0200] "GET /.git/config HTTP/2.0" 200 2229901 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "exatek.de"
34.176.243.106 - - [31/Aug/2026:08:39:20 +0200] "GET /.env HTTP/2.0" 200 1965486 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "exatek.de"
...
show less
Web App Attack
Port Scan
Hacking
Anonymous
2026-08-31 05:31:06
(1 month ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-30 09:25:02
(1 month ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-30 07:58:27
(1 month ago)
Excessive 404/403 errors
Brute-Force
๐ฆ๐ช
CG
2026-08-30 07:51:39
(1 month ago)
Web application attack, Automated scan
Web App Attack
Hacking
SQL Injection