Anonymous
2026-09-10 00:06:34
(1 week ago)
Path traversal / sensitive-file exploit probing (jail=apache-scanners)
Hacking
Web App Attack
πΊπΈ
leasj
2026-09-08 13:41:39
(1 week ago)
Observed Scanned 12 known-sensitive endpoint(s), e.g.: /var/www/.git/config, /backend/.git/config, / ...
show more
Observed Scanned 12 known-sensitive endpoint(s), e.g.: /var/www/.git/config, /backend/.git/config, /htdocs/.git/config, /wordpress/.git/config, /app/.git/config.
show less
Hacking
Bad Web Bot
Web App Attack
π¨π¦
eGuest
2026-09-06 12:28:31
(1 week ago)
34.186.192.5 - - [06/Sep/2026:06:28:30 -0600] "GET /backup.sql HTTP/1.1" 404 1834 "-" "Mozilla/5.0 ( ...
show more
34.186.192.5 - - [06/Sep/2026:06:28:30 -0600] "GET /backup.sql HTTP/1.1" 404 1834 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36"
34.186.192.5 - - [06/Sep/2026:06:28:30 -0600] "GET /backup.zip HTTP/1.1" 404 1834 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36"
...
show less
Hacking
Web App Attack
π©πͺ
big-cloud.nl
2026-09-06 08:14:07
(1 week ago)
Try to access /html/.git/config
Web App Attack
πΈπ¬
nayumi
2026-09-06 06:21:53
(1 week ago)
CrowdSec detection: crowdsecurity/http-probing | Service: http, http, http, http, http, http, http, ...
show more
CrowdSec detection: crowdsecurity/http-probing | Service: http, http, http, http, http, http, http, http, http, http, http
show less
Web App Attack
π¬π§
consul.to
2026-09-06 05:48:02
(1 week ago)
Web attack/malicious scanning detected
Web App Attack
π§πΎ
lns.bz
2026-09-05 13:26:59
(1 week ago)
Too many 404 requests [BY]
Web App Attack
π³π±
MyGlobalFlowers
2026-09-05 01:17:57
(2 weeks ago)
Multiple WAF Violations
Web App Attack
π³π±
debestelapp
2026-09-04 21:55:10
(2 weeks ago)
Web App Attack
Anonymous
2026-09-04 21:54:01
(2 weeks ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
π©πͺ
netclix.gr
2026-09-04 21:37:15
(2 weeks ago)
(mod_security) mod_security triggered on hostname [redacted] 34.186.192.5 (CA/Canada/5.192.186.34.bc ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.186.192.5 (CA/Canada/5.192.186.34.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
πΊπΈ
TPI-Abuse
2026-09-04 21:32:34
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.186.192.5 (5.192.186.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.192.5 (5.192.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:32:28.246663 2026] [security2:error] [pid 7138:tid 7138] [client 34.186.192.5:46494] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.marilynmather.com"] [uri "/app/.git/config"] [unique_id "aps47IM1Sj-x6a42MQH4GAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-09-04 16:05:23
(2 weeks ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-04 11:41:47
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.186.192.5 (5.192.186.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.192.5 (5.192.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:41:40.297994 2026] [security2:error] [pid 11122:tid 11122] [client 34.186.192.5:54578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thestillwatergroup.com"] [uri "/public/.git/config"] [unique_id "apqudOvy3_ByobuWzubuvAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-04 08:24:52
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.186.192.5 (5.192.186.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.192.5 (5.192.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 04:24:41.121338 2026] [security2:error] [pid 28600:tid 28600] [client 34.186.192.5:36656] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "californiarhythmproject.org"] [uri "/html/.git/config"] [unique_id "apqASbmT-1qwwgevb0lRcAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack