Anonymous
2026-10-03 04:31:31
(2 hours ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐ฒ๐ฝ
octageeks.com
2026-10-03 04:27:00
(2 hours ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ช๐ธ
Gem
2026-10-02 22:08:18
(8 hours ago)
Unauthorized web scan.
Web App Attack
๐ฉ๐ช
Hary74656
2026-10-02 20:32:37
(10 hours ago)
Fail2Ban on schani.hostmi.at: jail=apache-instablock, failures=1.
[client 34.178.138.173] [realclien ...
show more
Fail2Ban on schani.hostmi.at: jail=apache-instablock, failures=1.
[client 34.178.138.173] [realclient 34.178.138.173] [02/Oct/2026:22:32:36 +0200] [vhost schani.hostmi.at] 403 "GET /.git/config HTTP/1.1"
show less
Web App Attack
๐ช๐ธ
el-brujo
2026-10-02 19:55:33
(10 hours ago)
02/Oct/2026:21:55:33.007794 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
02/Oct/2026:21:55:33.007794 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 34.178.138.173] ModSecurity: Warning. Matched phrase "/.git/" at REQUEST_FILENAME. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.git/ found within REQUEST_FILENAME: /.git/config"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "hostench.eu"] [uri "/.git/config"] [unique_id "asAMNafMBPfbhc5oRzLHcAAAEz4"]
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 19:49:26
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.178.138.173 (173.138.178.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.178.138.173 (173.138.178.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 15:49:19.873366 2026] [security2:error] [pid 10264:tid 10264] [client 34.178.138.173:46022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hooks-n-hearts.com"] [uri "/.git/config"] [unique_id "asAKv75j7eyvxxyBj3tbVAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
j-tap
2026-10-02 19:45:44
(10 hours ago)
WordPress honeypot: automated scanner (xmlrpc / installer / .env / direct login POST)
Web App Attack
๐ฆ๐บ
Klaverstyn
2026-10-02 19:42:13
(10 hours ago)
Repeated 403 Forbidden responses
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 19:32:38
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.178.138.173 (173.138.178.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.178.138.173 (173.138.178.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 15:32:31.604357 2026] [security2:error] [pid 12671:tid 12685] [client 34.178.138.173:40558] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hnssales.com"] [uri "/.git/config"] [unique_id "asAGz_MUfA-kY6utoUPjHwAAAQk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-10-02 19:28:35
(11 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
agaesteves
2026-10-02 19:22:08
(11 hours ago)
[SISHIPISMO 360] TipoAtaque.PATH_PROBE | Acesso a path suspeito: /.git/config | Paths: /.git/config ...
show more
[SISHIPISMO 360] TipoAtaque.PATH_PROBE | Acesso a path suspeito: /.git/config | Paths: /.git/config | UA:
show less
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-02 19:11:34
(11 hours ago)
[ti-12al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34. ...
show more
[ti-12al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.178.138.173 - - \[02/Oct/2026:21:11:31 +0200\] "GET /.git/config HTTP/1.1" 404 7877 "-" "-"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 19:05:05
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.178.138.173 (173.138.178.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.178.138.173 (173.138.178.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 15:04:57.930862 2026] [security2:error] [pid 26494:tid 26494] [client 34.178.138.173:47960] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "herndonms5k.nilestree.com"] [uri "/.git/config"] [unique_id "asAAWT6GFYtlxNneSMj9hAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-10-02 19:03:52
(11 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-10-02 18:54:32
(11 hours ago)
Web attack/malicious scanning detected
Web App Attack