๐จ๐ฆ
polycoda
2026-10-11 03:30:14
(7 hours ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - ๐ก Port Scan (Non Decay-Based)
Port Scan
Hacking
Web App Attack
๐ฟ๐ฆ
vanderhost
2026-10-11 02:09:50
(8 hours ago)
[Laravel HoneypotPlus] Automated report - Honeypot access detected on path: /config/env/aws_credenti ...
show more
[Laravel HoneypotPlus] Automated report - Honeypot access detected on path: /config/env/aws_credentials.env via rule: /config
show less
Web App Attack
Bad Web Bot
๐น๐ท
eryilmaz
2026-10-11 01:58:25
(9 hours ago)
Automated attack blocked by eryilmaz WAF/defense engine (level 1, source: auto, path: /auth)
Web App Attack
Hacking
๐บ๐ธ
oralunal
2026-10-11 01:48:38
(9 hours ago)
IP banned by Fail2Ban in jail ente-suss ente.com-ssl_log mvfnds
...
Bad Web Bot
Web App Attack
๐ฉ๐ช
bazter.pro
2026-10-11 01:13:54
(9 hours ago)
Fail2Ban: apache-ratelimit - 20 failures
Port Scan
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-11 01:09:58
(9 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.19.207.33 (33.207.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.207.33 (33.207.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 21:09:51.034707 2026] [security2:error] [pid 11952:tid 11952] [client 34.19.207.33:59652] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||edscontracting.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "edscontracting.com"] [uri "/z9x8c7v6b5-debug-trigger-edscontracting.com"] [unique_id "asrh38u58hHdDVxq8uGygAAAADY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-10-11 00:04:41
(11 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.19.207.33 (CA/Canada/33.207.19.34.bc.googleu ...
show more
(mod_security) mod_security (id:949110) triggered by 34.19.207.33 (CA/Canada/33.207.19.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐ฉ๐ช
cloudmax
2026-10-11 00:02:05
(11 hours ago)
Cloudmax Protect [BOT BLOCK] - Suspicious User-Agent. Possible resource abuse, excessive requests, o ...
show more
Cloudmax Protect [BOT BLOCK] - Suspicious User-Agent. Possible resource abuse, excessive requests, or hacking attempt
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-10 22:51:22
(12 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.19.207.33 (33.207.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.207.33 (33.207.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 18:51:18.231986 2026] [security2:error] [pid 25046:tid 25046] [client 34.19.207.33:56112] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||curtbeams.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "curtbeams.com"] [uri "/z9x8c7v6b5-debug-trigger-curtbeams.com"] [unique_id "asrBZvDxYLE8zWkox3ExKgAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-10 21:39:31
(13 hours ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-10-10 21:21:17
(13 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.19.207.33 (33.207.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.207.33 (33.207.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 17:21:12.190868 2026] [security2:error] [pid 31026:tid 31026] [client 34.19.207.33:47994] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||citrineartstudio.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "citrineartstudio.com"] [uri "/z9x8c7v6b5-debug-trigger-citrineartstudio.com"] [unique_id "asqsSFpy8TqQnKxtYyiBRgAAADs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-10-10 21:06:34
(13 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 21:03:39
(14 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.19.207.33 (33.207.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.207.33 (33.207.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 17:03:32.500331 2026] [security2:error] [pid 11093:tid 11093] [client 34.19.207.33:46978] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||chicagowca.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "chicagowca.com"] [uri "/z9x8c7v6b5-debug-trigger-chicagowca.com"] [unique_id "asqoJKX0eYqb_Uw5zeSFagAAADg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-10-10 20:50:37
(14 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 20:00:43
(15 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.19.207.33 (33.207.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.207.33 (33.207.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 16:00:39.747193 2026] [security2:error] [pid 21881:tid 21881] [client 34.19.207.33:52266] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||campconcerto.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "campconcerto.com"] [uri "/z9x8c7v6b5-debug-trigger-campconcerto.com"] [unique_id "asqZZ4UXptkG8bGLgqF9XgAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack