🇳🇱
e.fierstra
2026-09-03 12:16:38
(1 hour ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 09:47:47
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.178.68.90 (90.68.178.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.178.68.90 (90.68.178.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 05:47:43.048788 2026] [security2:error] [pid 8050:tid 8050] [client 34.178.68.90:60678] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.casadelsolmexico.net"] [uri "/api/.git/config"] [unique_id "aplCP_34cEwyUOj_cnKgBQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
AetherFox
2026-09-03 08:47:11
(4 hours ago)
AetherFox VoidGuard detected: [Thu Sep 03 08:47:10.367497 2026] [authz_core:error] [pid 481171:tid 4 ...
show more
AetherFox VoidGuard detected: [Thu Sep 03 08:47:10.367497 2026] [authz_core:error] [pid 481171:tid 481195] [client 34.178.68.90:50638] AH01630: client denied by server configuration: proxy:https://hq.draconigen.net.dedivirt4209.your-server.de/src/.git/config
[Thu Sep 03 08:47:10.367766 2026] [authz_core:error] [pid 481171:tid 481195] [client 34.178.68.90:50638] AH01630: client denied by server configuration: /var/www/html/ERRORpages/403.html
[Thu Sep 03 08:47:10.367963 2026] [authz_core:error] [pid 428192:tid 428245] [client 34.178.68.90:50620] AH01630: client denied by server configuration: proxy:https://hq.draconigen.net.dedivirt4209.your-server.de/wordpress/.git/config
[Thu Sep 03 08:47:10.368064 2026] [authz_core:error] [pid 428192:tid 428245] [client 34.178.68.90:50620] AH01630: client denied by server configuration: /var/www/html/ERRORpages/403.html
[Thu Sep 03 08:47:10.368948 2026] [authz_core:error] [pid 428191:tid 428213] [client 34.178.68.90:50646] AH01630
...
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 08:11:13
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.178.68.90 (90.68.178.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.178.68.90 (90.68.178.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 04:11:07.975292 2026] [security2:error] [pid 8505:tid 8505] [client 34.178.68.90:59188] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blog.yeswedeliver.org"] [uri "/src/.git/config"] [unique_id "apkrmzzPI7TeHATWufd0GwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
SwinT
2026-09-03 07:00:23
(6 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
🇩🇪
raph
2026-09-03 06:34:59
(6 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-03 06:22:21
(7 hours ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-09-03 06:00:04
(7 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇩🇪
Hagen Schoebel
2026-09-03 05:59:35
(7 hours ago)
Blocked by CrowdSec - crowdsecurity/vpatch-git-config (NL)
Port Scan
Brute-Force
Web App Attack
SSH
🇺🇸
TPI-Abuse
2026-09-03 05:16:50
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.178.68.90 (90.68.178.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.178.68.90 (90.68.178.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 01:16:42.558675 2026] [security2:error] [pid 11220:tid 11271] [client 34.178.68.90:33276] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nomadic-welshman.adetnw.com"] [uri "/backend/.git/config"] [unique_id "apkCuv1PFYKXcBTRhO5rbAAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-03 05:02:39
(8 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /src/.git/config (+11 more) | 2026-09-03 05:02 UTC
show less
Hacking
Web App Attack
🇩🇪
big-cloud.nl
2026-09-03 03:56:40
(9 hours ago)
Try to access /app/.git/config
Web App Attack