๐บ๐ธ
interbiznw.com
2026-09-02 21:53:29
(8 minutes ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ฌ๐ง
gws-hostmaster
2026-09-02 20:40:05
(1 hour ago)
ModSecurity OWASP CRS (Anomaly Score: 50): JavaScript Prototype Pollution;JSON-Based SQL Injection;N ...
show more
ModSecurity OWASP CRS (Anomaly Score: 50): JavaScript Prototype Pollution;JSON-Based SQL Injection;Node.js Injection Attack 1/2;PHP Injection Attack: Variable Access Found;Remote Command Execution: Direct Unix Command Execution;Remote Command Execution: Unix Shell Expression Found;Restricted File Access Attempt;SQL Injection Attack: SQL function name detected;URL file extension is restricted by policy;
show less
Web App Attack
๐ฉ๐ช
webanyone
2026-09-02 17:31:35
(4 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-02 17:30:06
(4 hours ago)
Fail2Ban - [WAF]ModSecurity rule violation on modsecurity ... [wa01]
Hacking
SQL Injection
Web App Attack
Anonymous
2026-09-02 16:11:57
(5 hours ago)
IP matched detection query more than 2 hosts and only bad rq long ban.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 13:21:25
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.101.53 (53.101.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.101.53 (53.101.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 09:21:18.507720 2026] [security2:error] [pid 2399:tid 2399] [client 34.18.101.53:50840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grayhost.net"] [uri "/.git/config"] [unique_id "apgizkaJ-xBTP7FXcCNVOAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 12:58:58
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.101.53 (53.101.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.101.53 (53.101.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 08:58:52.757137 2026] [security2:error] [pid 4233:tid 4233] [client 34.18.101.53:41816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grayarea.kmp.net"] [uri "/.git/config"] [unique_id "apgdjHO_bxPRPzzCY29lxwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 12:32:24
(9 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ฉ๐ช
on-com
2026-09-02 11:52:59
(10 hours ago)
URL scan
Brute-Force
Web App Attack
๐ฉ๐ช
marten_o
2026-09-02 10:49:59
(11 hours ago)
34.18.101.53 - - [02/Sep/2026:12:49:59 +0200] "GET /tmp/phpinfo.php HTTP/1.1" 404 236 "-" "Mozilla/5 ...
show more
34.18.101.53 - - [02/Sep/2026:12:49:59 +0200] "GET /tmp/phpinfo.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 320 458
...
show less
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-09-02 09:39:44
(12 hours ago)
(modsecurity) srv102 ModSecurity 34.18.101.53 (QA/Qatar/53.101.18.34.bc.googleusercontent.com): 30 i ...
show more
(modsecurity) srv102 ModSecurity 34.18.101.53 (QA/Qatar/53.101.18.34.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 08:29:22
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.101.53 (53.101.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.101.53 (53.101.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 04:29:16.267177 2026] [security2:error] [pid 18746:tid 18746] [client 34.18.101.53:59280] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grasslakepizzatime.com"] [uri "/.git/config"] [unique_id "apfeXG7Byc9SXOwzIi9R7AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-02 07:52:10
(14 hours ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
gamabe
2026-09-02 07:13:20
(14 hours ago)
Detected crowdsecurity/http-sensitive-files attack pattern. Reported by CrowdSec IDS.
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 06:19:45
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.101.53 (53.101.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.101.53 (53.101.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:19:40.534520 2026] [security2:error] [pid 9145:tid 9145] [client 34.18.101.53:47928] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "graphixspace.robtown.com"] [uri "/.git/config"] [unique_id "ape__IaHjp70ikeOqRZt1QAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack