Anonymous
2026-06-16 07:03:55
(10 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CA, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CA, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-16 00:14:48
(17 hours ago)
Scanning/Probing (76)
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2026-06-15 09:53:20
(1 day ago)
117 requests with url.path *sendgrid.env
Brute-Force
Bad Web Bot
๐ซ๐ท
Octopuce
2026-06-15 07:50:41
(1 day ago)
Aggressive web search of vulnerable pages: /api/v2/.env /.env /.env.local /production/.env /api/v1/. ...
show more
Aggressive web search of vulnerable pages: /api/v2/.env /.env /.env.local /production/.env /api/v1/.env ...
show less
Web App Attack
Anonymous
2026-06-15 06:04:00
(1 day ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CA, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CA, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Cloud86 B.V.
2026-06-15 05:39:03
(1 day ago)
categories: DDoS Attack
DDoS Attack
Anonymous
2026-06-15 04:56:21
(1 day ago)
34.19.217.142 - - [15/Jun/2026:06:56:19 +0200] "GET /.env.stage HTTP/1.1" 404 1944 "-" "Mozilla/5.0 ...
show more
34.19.217.142 - - [15/Jun/2026:06:56:19 +0200] "GET /.env.stage HTTP/1.1" 404 1944 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3879.0 Safari/537.36 Edg/78.0.249.0"
34.19.217.142 - - [15/Jun/2026:06:56:19 +0200] "GET /.env.stage HTTP/1.1" 404 617 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3879.0 Safari/537.36 Edg/78.0.249.0"
34.19.217.142 - - [15/Jun/2026:06:56:19 +0200] "GET /.env.uat HTTP/1.1" 404 1944 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/62.0.3202.62 Safari/537.36"
34.19.217.142 - - [15/Jun/2026:06:56:19 +0200] "GET /.env.uat HTTP/1.1" 404 617 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/62.0.3202.62 Safari/537.36"
34.19.217.142 - - [15/Jun/2026:06:56:19 +0200] "GET /.env.qa HTTP/1.1" 404 1944 "-" "Mozilla/5.0 (Linux; U; Android 8.1.0; en-us; Redmi 5 Plus Build/OPM1.171019.019) AppleWeb
...
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
ciccio diddo
2026-06-15 00:28:13
(1 day ago)
CMS/WP Exploit multiple 40X port:Tcp/80,443
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 00:04:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.19.217.142 (142.217.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.217.142 (142.217.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:04:31.325376 2026] [security2:error] [pid 12375:tid 12375] [client 34.19.217.142:41228] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "techsuite7.net"] [uri "/.env.save"] [unique_id "ai9Bj_Vk-rWyzLvUE8ickAAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 21:38:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.19.217.142 (142.217.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.217.142 (142.217.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 17:38:29.502347 2026] [security2:error] [pid 11137:tid 11137] [client 34.19.217.142:50276] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jmms.mx"] [uri "/.env.backup.txt"] [unique_id "ai8fVWbXptMCtME97NOfhQAAAFM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-14 19:42:34
(1 day ago)
Multiple WAF Violations
Web App Attack
๐จ๐ญ
zynex
2026-06-14 06:28:01
(2 days ago)
URL Probing: /qa/.env
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-14 06:23:09
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-06-14 04:48:28
(2 days ago)
Scanning for web/db/file exploits on formulieren.sunmaster.nl.mach3test.com
SQL Injection
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-06-14 04:38:06
(2 days ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.19.217.142 (CA/Canada/142.217.19.34.b ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.19.217.142 (CA/Canada/142.217.19.34.bc.googleusercontent.com): 2 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.19.217.142 - - [14/Jun/2026:06:37:50 +0200] "GET /data/.env HTTP/1.1" 403 146 "-" "Xenu Link Sleuth/1.3.8" "-" host=www.lastoriadelcalcio.accademiam.com
34.19.217.142 - - [14/Jun/2026:06:37:58 +0200] "GET /src/sendgrid.env HTTP/1.1" 301 0 "-" "Mozilla/5.0 (Linux; Android 4.2.2; WX10K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.99 Mobile Safari/537.36" "-" host=www.lastoriadelcalcio.accademiam.com
show less
Port Scan