๐ซ๐ท
Baking333
2026-10-08 07:40:48
(1 day ago)
[redacted] 34.185.151.240 - - [08/Oct/2026:08:40:47 +0100] "GET /@fs/../.env?raw?? HTTP/2.0" 404 307 ...
show more
[redacted] 34.185.151.240 - - [08/Oct/2026:08:40:47 +0100] "GET /@fs/../.env?raw?? HTTP/2.0" 404 3070 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; +claudebot@[redacted])" [redacted] 34.185.151.240 - - [08/Oct/2026:08:40:47 +0100] "GET /@fs/src/.env?raw?? HTTP/2.0" 404 3070 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://[redacted]/)"
show less
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2026-10-08 06:38:45
(1 day ago)
08/Oct/2026:08:38:44.314625 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
08/Oct/2026:08:38:44.314625 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 34.185.151.240] ModSecurity: Warning. Pattern match "(?i)(?:\\\\\\\\x5c|(?:%(?:c(?:0%(?:[2aq]f|5c|9v)|1%(?:[19p]c|8s|af))|2(?:5(?:c(?:0%25af|1%259c)|2f|5c)|%46|f)|(?:(?:f(?:8%8)?0%8|e)0%80%a|bg%q)f|%3(?:2(?:%(?:%6|4)6|F)|5%%63)|u(?:221[56]|002f|EFC8|F025)|1u|5c)|0x(?:2f|5c)|\\\\\\\\/))(?:%(?:(?:f(?:(?:c%80|8)%8)?0%8 ..." at REQUEST_URI_RAW. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "48"] [id "930100"] [msg "Path Traversal Attack (/../)"] [data "Matched Data: /../ found within REQUEST_URI_RAW: /api/w/admins/jobs_u/get_log_file/../../../../proc/self/environ"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [hostname "grafana.elhacker.net"] [uri "/api/proc/self/environ"] [uniqu
...
show less
Hacking
Web App Attack
๐ช๐ธ
el-brujo
2026-10-08 05:48:48
(1 day ago)
34.185.151.240 - - [08/Oct/2026:07:48:45 +0200] "GET /2dy67wbbixc500ncid8j HTTP/2.0" 404 4620 "-" "M ...
show more
34.185.151.240 - - [08/Oct/2026:07:48:45 +0200] "GET /2dy67wbbixc500ncid8j HTTP/2.0" 404 4620 "-" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36"
34.185.151.240 - - [08/Oct/2026:07:48:45 +0200] "POST /lib/terminal-xhr.php HTTP/2.0" 404 4620 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)"
34.185.151.240 - - [08/Oct/2026:07:48:45 +0200] "GET /z9x8c7v6b5-debug-trigger-foro.elhacker.net HTTP/2.0" 404 4620 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36; compatible; OAI-SearchBot/1.4; +https://openai.com/searchbot"
34.185.151.240 - - [08/Oct/2026:07:48:47 +0200] "POST /graphql HTTP/2.0" 404 4620 "https://foro.elhacker.net" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
...
show less
Web App Attack
Hacking
๐ฎ๐ฉ
rvsdi
2026-10-08 05:12:05
(1 day ago)
[OGWAF] bad_reputation attack blocked | severity: high | GET /assets/plugins/bootstrap/js/bootstrap. ...
show more
[OGWAF] bad_reputation attack blocked | severity: high | GET /assets/plugins/bootstrap/js/bootstrap.bundle.min.js | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.3
show less
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-07 23:03:25
(1 day ago)
[cb-13al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apac ...
show more
[cb-13al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apache-404. Example: 34.185.151.240 - - [08/Oct/2026:01:03:23 +0200] "GET /pl6kln748fi30zig3lgp HTTP/2.0" 404 1901 "-" "Mozilla/5.0 (compatible; MoonshotBot/1.0; +https://kimi.ai/)"
34.185.151.240 - - [08/Oct/2026:01:03:23 +0200] "GET /duab3sq8e6s66pehhol6 HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)"
34.185.151.240 - - [08/Oct/2026:01:03:23 +0200] "GET /build/manifest.json HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
34.185.151.240 - - [08/Oct/2026:01:03:23 +0200] "GET /dist/.vite/manifest.json HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36
...
show less
Bad Web Bot
Web App Attack
๐ง๐ท
radardatelecom
2026-10-07 22:27:03
(1 day ago)
Blocked by Radar da Telecom firewall โ abuseipdb
Bad Web Bot
Web App Attack
๐ธ๐ฌ
Cloudkul Cloudkul
2026-10-07 22:03:12
(1 day ago)
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requ ...
show more
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requests.
show less
Brute-Force
Web App Attack
๐ฉ๐ช
raph
2026-10-07 20:58:31
(1 day ago)
[LIB DIR] crawler /vendor/*, /node_modules/*, /laravel/*, etc.
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-10-07 20:54:36
(1 day ago)
20 attempts against mh-misbehave-ban on sonic
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-07 20:51:00
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ฉ๐ช
itsolon
2026-10-07 20:30:29
(1 day ago)
[07/Oct/2026:22:30:27 +0200] 179140502755.665341 34.185.151.240 0 217.154.7.177 443
[07/Oct/2026:22: ...
show more
[07/Oct/2026:22:30:27 +0200] 179140502755.665341 34.185.151.240 0 217.154.7.177 443
[07/Oct/2026:22:30:27 +0200] 179140502778.161758 34.185.151.240 0 217.154.7.177 443
[07/Oct/2026:22:30:27 +0200] 179140502759.437574 34.185.151.240 0 217.154.7.177 443
[07/Oct/2026:22:30:28 +0200] 179140502884.201779 34.185.151.240 0 217.154.7.177 443
[07/Oct/2026:22:30:28 +0200] 179140502858.909398 34.185.151.240 0 217.154.7.177 443
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-10-07 20:23:27
(1 day ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after matched multi-pattern attack signatur ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after matched multi-pattern attack signature. Evidence: AttackPattern: /\.vite/ (Match: /.vite/)
show less
Hacking
Web App Attack
๐ฉ๐ช
FD-IX
2026-10-07 20:22:16
(1 day ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ismailk
2026-10-07 20:12:04
(1 day ago)
WordPress attack on tuncayozkan.com (auto-detected): tur=imza ulke=DE puan=100 nginx=15 wf=8 cf=4 hi ...
show more
WordPress attack on tuncayozkan.com (auto-detected): tur=imza ulke=DE puan=100 nginx=15 wf=8 cf=4 hiz=46 404cesit=20. Blocked by adaptive firewall.
show less
Web App Attack
Bad Web Bot
Anonymous
2026-10-07 20:02:19
(1 day ago)
Detected by CrowdSec: crowdsecurity/http-probing
Web App Attack