๐บ๐ธ
jormaster3k
2026-08-01 00:35:10
(50 minutes ago)
Attack against Apache (too many 404s)
Web App Attack
๐บ๐ธ
infra-monitor
2026-07-31 23:00:06
(2 hours ago)
Automated ban via infra-monitor: suspicious-probe, mgmt-path-probe
Port Scan
Web App Attack
Anonymous
2026-07-31 20:41:13
(4 hours ago)
Bot / seems abusive / Apache connections: 28
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
rsa
2026-07-31 20:22:00
(5 hours ago)
GET /app HTTP/1.1
DDoS Attack
Brute-Force
Exploited Host
Web App Attack
Hacking
๐ณ๐ฑ
e.fierstra
2026-07-31 13:53:27
(11 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-07-31 10:42:28
(14 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-31 08:14:34
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.187.52.196 (196.52.187.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.187.52.196 (196.52.187.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 04:14:28.405839 2026] [security2:error] [pid 6234:tid 6234] [client 34.187.52.196:59540] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "members.oxfordgliding.com"] [uri "/.git/HEAD"] [unique_id "amxZZKGRzYCY_OX_sOHp3gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-07-31 02:35:01
(22 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-31 01:15:43
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.187.52.196 (196.52.187.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.187.52.196 (196.52.187.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 21:15:39.895891 2026] [security2:error] [pid 30295:tid 30313] [client 34.187.52.196:36734] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||api.absurdotron.com|F|2"] [data ".absurdotron.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "api.absurdotron.com"] [uri "/z9x8c7v6b5-debug-trigger-api.absurdotron.com"] [unique_id "amv3O-9m5nQowwLp_fdhpgAAAE0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
oralunal
2026-07-30 22:09:14
(1 day ago)
IP banned by Fail2Ban in jail ah-suss access.log mvfnds
...
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-30 21:58:43
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.187.52.196 (196.52.187.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.187.52.196 (196.52.187.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 17:58:38.780476 2026] [security2:error] [pid 1744243:tid 1744243] [client 34.187.52.196:47984] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bilimkurgumanyagi.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bilimkurgumanyagi.com"] [uri "/z9x8c7v6b5-debug-trigger-bilimkurgumanyagi.com"] [unique_id "amvJDhxZ-4BkLGXK11INbwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-07-30 20:39:00
(1 day ago)
CrowdSec: crowdsecurity/http-probing | req: /.aws/config | 11 distinct paths | UA: Mozilla/5.0 (comp ...
show more
CrowdSec: crowdsecurity/http-probing | req: /.aws/config | 11 distinct paths | UA: Mozilla/5.0 (compatible; Bytespider; [email protected] )
show less
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-30 20:02:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.187.52.196 (196.52.187.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.187.52.196 (196.52.187.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 16:02:24.101109 2026] [security2:error] [pid 338:tid 338] [client 34.187.52.196:46882] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "borzois.com"] [uri "/.git/config"] [unique_id "amut0DPWMSOcxUrfbrasyAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-30 18:02:29
(1 day ago)
Web attack
Bad Web Bot
Web App Attack
Anonymous
2026-07-30 15:40:05
(1 day ago)
| Suspicious URL access.
Web App Attack
Hacking
SQL Injection