๐บ๐ธ
TPI-Abuse
2026-08-29 23:11:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.21.28.179 (179.28.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.28.179 (179.28.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 19:11:39.393428 2026] [security2:error] [pid 32528:tid 32528] [client 34.21.28.179:49852] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.skintormint.com"] [uri "/app/.git/config"] [unique_id "apNnK8or_0ADiRvlAB1NtgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Petros Stefanakis
2026-08-29 15:56:59
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.21.28.179 (US/United States/179.28.2 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.21.28.179 (US/United States/179.28.21.34.bc.googleusercontent.com)
show less
SQL Injection
๐ฌ๐ท
ggb_st
2026-08-29 15:05:55
(1 day ago)
[2026-08-29 15:05:54] 34.21.28.179 triggered a honeypot. Requested on port 80. URI: /app/.git/config ...
show more
[2026-08-29 15:05:54] 34.21.28.179 triggered a honeypot. Requested on port 80. URI: /app/.git/config, UA: crusader-worker/1.0
...
show less
Bad Web Bot
Brute-Force
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-08-29 14:13:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.21.28.179 (179.28.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.28.179 (179.28.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 10:13:25.511962 2026] [security2:error] [pid 10035:tid 10067] [client 34.21.28.179:39054] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.accrediteddegree.aafm.us"] [uri "/.git/config"] [unique_id "apLpBSGq06eqtA3PEJqzCQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 11:16:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.21.28.179 (179.28.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.28.179 (179.28.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 07:16:09.755436 2026] [security2:error] [pid 10628:tid 10628] [client 34.21.28.179:44048] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mitchellart.com"] [uri "/.git/config"] [unique_id "apK_eSNrZ7IpiSbQE81LYgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
SCHAPPY
2026-08-29 10:52:47
(1 day ago)
Brute-force attack to non-existent web resources, HTTP code 404.
Brute-Force
Web App Attack
๐ฉ๐ช
Hagen Schoebel
2026-08-29 09:07:57
(1 day ago)
Blocked by CrowdSec - crowdsecurity/vpatch-git-config (US)
Port Scan
Brute-Force
Web App Attack
SSH
๐ป๐ณ
trung.fun
2026-08-29 06:46:37
(2 days ago)
DDoS, Hack, Brute Force, Web Attack
...
DDoS Attack
Web Spam
Hacking
Brute-Force
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-29 06:04:04
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-08-29 05:41:13
(2 days ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.git (Match: /.git)
show less
Hacking
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-08-29 04:59:00
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 04:05:27
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.21.28.179 (179.28.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.28.179 (179.28.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 00:05:20.940526 2026] [security2:error] [pid 28783:tid 28783] [client 34.21.28.179:39740] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.candlecrawler.trade"] [uri "/public/.git/config"] [unique_id "apJagOwriJ8UyhRgt4rgkAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-08-29 03:25:03
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ท๐ด
iulianh
2026-08-29 03:01:26
(2 days ago)
80,443
Brute-Force
SSH
๐ธ๐ช
vaia.cloud
2026-08-29 01:50:01
(2 days ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack