π¬π§
openstrike.co.uk
2026-09-16 05:14:24
(22 hours ago)
2 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
πΊπΈ
mnsf
2026-09-15 19:05:41
(1 day ago)
Abuse Detected (9)
Brute-Force
Web App Attack
Anonymous
2026-09-15 18:25:04
(1 day ago)
suspicious request in access.log
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-15 18:06:56
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 34.181.239.134 (134.239.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:949110) triggered by 34.181.239.134 (134.239.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:06:52.988429 2026] [security2:error] [pid 19110:tid 19110] [client 34.181.239.134:56588] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "chuckwagon.org"] [uri "/.git/config"] [unique_id "aqmJPMTsSyyts6E94MXHEAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-15 17:51:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.181.239.134 (134.239.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.239.134 (134.239.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 13:50:55.314278 2026] [security2:error] [pid 20357:tid 20479] [client 34.181.239.134:32838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chronotar.com"] [uri "/.git/config"] [unique_id "aqmFf3lsIF3Top9mYEy9bwAAAlM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 17:44:06
(1 day ago)
[server.techsupportltd.gr] httpd-config-scan: sites=www.chro.gr; logs=/var/log/httpd/domains/chro.gr ...
show more
[server.techsupportltd.gr] httpd-config-scan: sites=www.chro.gr; logs=/var/log/httpd/domains/chro.gr.log; samples=/.git/config
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-15 17:27:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.181.239.134 (134.239.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.239.134 (134.239.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 13:27:01.015165 2026] [security2:error] [pid 497:tid 497] [client 34.181.239.134:43524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "christinastoddard.com"] [uri "/.git/config"] [unique_id "aql_5VHKoFBxQSLdzboUHwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 17:21:49
(1 day ago)
Web scanner: GET /.git/config
Web App Attack
Hacking
π©πͺ
iNetWorker
2026-09-15 17:20:55
(1 day ago)
firewall-block, port(s): 443/tcp
Port Scan
π³π±
Alt255
2026-09-15 17:20:55
(1 day ago)
[ti-30al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-30al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.181.239.134 - - [15/Sep/2026:19:20:55 +0200] "GET /.git/config HTTP/1.1" 404 7907 "-" "-"
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-15 17:02:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.181.239.134 (134.239.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.239.134 (134.239.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 13:02:42.528401 2026] [security2:error] [pid 13063:tid 13063] [client 34.181.239.134:32972] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chrischamberlain.mindrelaxation.com"] [uri "/.git/config"] [unique_id "aql6MkdJDfM28lO7Uf4EYgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
big-cloud.nl
2026-09-15 16:48:06
(1 day ago)
Try to access /.git/config
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-15 16:46:16
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.181.239.134 (134.239.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.239.134 (134.239.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 12:46:11.092927 2026] [security2:error] [pid 4986:tid 4986] [client 34.181.239.134:58484] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chooseyourowntrail.com.robertmcatee.com"] [uri "/.git/config"] [unique_id "aql2U_OTyrk8OOsSI2Ol5wAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
kkw
2026-09-15 16:22:48
(1 day ago)
[REDACTED] 34.181.239.134 - - [15/Sep/2026:18:22:48 +0200] "GET /.git/config HTTP/1.1" 404 4560 "-" ...
show more
[REDACTED] 34.181.239.134 - - [15/Sep/2026:18:22:48 +0200] "GET /.git/config HTTP/1.1" 404 4560 "-" "-"
... (mode: searching http-sensitive-files)
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-15 16:12:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.181.239.134 (134.239.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.239.134 (134.239.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 12:12:21.988693 2026] [security2:error] [pid 32142:tid 32142] [client 34.181.239.134:38200] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chitsey.com"] [uri "/.git/config"] [unique_id "aqluZc7dFYOnsOF_RO63SwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack