🇺🇸
TPI-Abuse
2026-09-04 12:04:27
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.20.253.121 (121.253.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.253.121 (121.253.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 08:04:19.513417 2026] [security2:error] [pid 10165:tid 10165] [client 34.20.253.121:41052] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "qyzaco.com"] [uri "/www/.git/config"] [unique_id "apqzwwMIzOmpgQ7KjTVvOgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 12:00:02
(5 hours ago)
suspicious request in access.log
Web App Attack
Anonymous
2026-09-04 04:51:06
(13 hours ago)
Web application attack detected.
Web App Attack
🇬🇧
consul.to
2026-09-04 00:29:32
(17 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇦
URAN Publishing Service
2026-09-04 00:20:44
(17 hours ago)
[04/Sep/2026:03:20:43 +0300] -- 34.20.253.121 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[04/Sep/2026:03:20:43 +0300] -- 34.20.253.121 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
🇺🇸
Gabriel Camargo
2026-09-03 23:35:35
(18 hours ago)
34.20.253.121 - - [03/Sep/2026:18:35:35 -0500] "GET /app/.git/config HTTP/1.1" 301 178 "-" "crusader ...
show more
34.20.253.121 - - [03/Sep/2026:18:35:35 -0500] "GET /app/.git/config HTTP/1.1" 301 178 "-" "crusader-worker/1.0"
34.20.253.121 - - [03/Sep/2026:18:35:35 -0500] "GET /var/www/.git/config HTTP/1.1" 301 178 "-" "crusader-worker/1.0"
34.20.253.121 - - [03/Sep/2026:18:35:35 -0500] "GET /htdocs/.git/config HTTP/1.1" 301 178 "-" "crusader-worker/1.0"
...
show less
Brute-Force
SSH
🇳🇱
e.fierstra
2026-09-03 21:50:53
(20 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-03 18:15:03
(23 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇧🇪
cmbplf
2026-09-03 15:42:48
(1 day ago)
1.719 requests with url.path *.git/*
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-03 15:24:02
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.20.253.121 (121.253.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.253.121 (121.253.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 11:23:57.683311 2026] [security2:error] [pid 14832:tid 14832] [client 34.20.253.121:35130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrbss.com"] [uri "/htdocs/.git/config"] [unique_id "apmRDUZ4w-LX2hmkCg2OvAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 14:48:03
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.20.253.121 (121.253.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.253.121 (121.253.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 10:47:56.826803 2026] [security2:error] [pid 3461:tid 3461] [client 34.20.253.121:46282] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "missingfilm.com"] [uri "/src/.git/config"] [unique_id "apmInJaXwD5S86zvmIt92QAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 13:03:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.20.253.121 (121.253.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.253.121 (121.253.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 09:03:16.662381 2026] [security2:error] [pid 9407:tid 9407] [client 34.20.253.121:60554] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "steers.jbaydeliveries.com"] [uri "/site/.git/config"] [unique_id "aplwFHkjJnFW_z3VP2b1CwAAAIw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 12:18:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.20.253.121 (121.253.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.253.121 (121.253.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 08:18:17.499042 2026] [security2:error] [pid 19024:tid 19024] [client 34.20.253.121:45262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "copiersgreensboro.com"] [uri "/site/.git/config"] [unique_id "aplliWbclu0rJHruBBm1WQAAAEo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-03 12:18:20
(1 day ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 10:24:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.20.253.121 (121.253.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.253.121 (121.253.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 06:24:42.222614 2026] [security2:error] [pid 2379:tid 2379] [client 34.20.253.121:54920] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ericeschenbach.com"] [uri "/app/.git/config"] [unique_id "aplK6iEwJ-mLPogTqA9NiwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack