Anonymous
2026-09-24 16:05:06
(3 hours ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-09-23 09:04:12
(1 day ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/198.216.179.34.bc.googleuserconte ...
show more
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/198.216.179.34.bc.googleusercontent.com
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 18:00:48
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.179.216.198 (198.216.179.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.179.216.198 (198.216.179.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 14:00:42.881954 2026] [security2:error] [pid 6974:tid 7198] [client 34.179.216.198:57822] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hoffmanandassoc.com"] [uri "/.git/config"] [unique_id "arFwysb35Z_2CrFZ6OD9rgAAAhg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-21 15:26:04
(3 days ago)
Fail2Ban nginx-scanner-critical: critical web exploit scan
Web App Attack
๐ฉ๐ช
grassau.com
2026-09-21 15:02:50
(3 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.179.216.198 (DE/Germany/Hesse/Frankf ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.179.216.198 (DE/Germany/Hesse/Frankfurt am Main/198.216.179.34.bc.googleusercontent.com)
show less
SQL Injection
๐ณ๐ฑ
Alt255
2026-09-21 14:52:34
(3 days ago)
[ti-02ra] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-02ra] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.179.216.198 - - [21/Sep/2026:16:52:13 +0200] "GET /.git/config HTTP/1.1" 404 128910 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 13:53:53
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.179.216.198 (198.216.179.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.179.216.198 (198.216.179.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 09:53:48.854042 2026] [security2:error] [pid 32736:tid 32736] [client 34.179.216.198:50358] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.tugofwarrior.com"] [uri "/.git/config"] [unique_id "arE27MAEvdt9AAGpllO7DgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 13:19:09
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.179.216.198 (198.216.179.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.179.216.198 (198.216.179.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 09:19:02.412102 2026] [security2:error] [pid 1525:tid 1525] [client 34.179.216.198:42130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.tubbesing.services"] [uri "/.git/config"] [unique_id "arEuxsJY1zu0IW7Txy20PwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2026-09-20 18:56:49
(4 days ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - โ๏ธ Configuration File Access (Non Decay-Based ...
show more
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - โ๏ธ Configuration File Access (Non Decay-Based) - โช๏ธ Excessive 30X Errors (Decay-Based)
show less
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 18:37:27
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.179.216.198 (198.216.179.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.179.216.198 (198.216.179.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 14:37:20.614440 2026] [security2:error] [pid 4632:tid 4632] [client 34.179.216.198:48938] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "magiccarpentry.com.citystreetsalon.com"] [uri "/.git/config"] [unique_id "arAn4EbWIB2IerzIwuOKeAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-20 15:05:04
(4 days ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack