๐ณ๐ฑ
e.fierstra
2026-08-31 17:33:12
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ซ๐ท
service Informatique
2026-08-31 04:00:37
(2 days ago)
GET /wp-config
Web App Attack
๐ณ๐ฑ
Savvii
2026-08-28 20:49:23
(4 days ago)
20 attempts against mh-misbehave-ban on eris
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-27 22:01:23
(5 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-26.
show less
Web App Attack
SSH
Hacking
๐ณ๐ด
jad-abuse
2026-08-27 20:22:07
(5 days ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure, scanner_ua, tls_scanner. Observed by 1 sensor(s); 24 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 19:10:35
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.20.128.250 (250.128.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.128.250 (250.128.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 15:10:30.372462 2026] [security2:error] [pid 2611:tid 2611] [client 34.20.128.250:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.topbrand.co"] [uri "/.git/config"] [unique_id "apCLpm-UYoVPyao2EkYBTQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-27 18:11:49
(5 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 18:07:59
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.20.128.250 (250.128.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.128.250 (250.128.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 14:07:55.016853 2026] [security2:error] [pid 28536:tid 28536] [client 34.20.128.250:49198] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bentechconstruction.com"] [uri "/www/.git/config"] [unique_id "apB8-_wsa5faEll01Hyz0AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
YF
2026-08-27 18:00:51
(5 days ago)
Git config exposure probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:38:17
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.20.128.250 (250.128.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.128.250 (250.128.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:38:08.859232 2026] [security2:error] [pid 23411:tid 23423] [client 34.20.128.250:49516] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "woadwellness.com"] [uri "/htdocs/.git/config"] [unique_id "apBn8JdiOxTpuKB2E1JRVgAAAUk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-27 14:52:24
(5 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-08-27 11:11:44
(6 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-08-27 10:12:57
(6 days ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
๐ฌ๐ง
gws-hostmaster
2026-08-27 10:01:23
(6 days ago)
ModSecurity OWASP CRS (Anomaly Score: 5): Restricted File Access Attempt;
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 09:08:22
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.20.128.250 (250.128.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.128.250 (250.128.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 05:08:16.088538 2026] [security2:error] [pid 9888:tid 9962] [client 34.20.128.250:38448] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mbaranking.net.aafm.us"] [uri "/.git/config"] [unique_id "ao_-gKCVIImPHDjymLk5HQAAAMs"]
show less
Brute-Force
Bad Web Bot
Web App Attack