๐บ๐ธ
mnsf
2026-08-28 01:05:12
(6 hours ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 18:24:46
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.140.50 (50.140.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.140.50 (50.140.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 14:24:39.929002 2026] [security2:error] [pid 26041:tid 26041] [client 34.22.140.50:50648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bigbandrockparty.com.jazzclubla.com"] [uri "/.git/config"] [unique_id "apCA55zii2xfkwC05P4mewAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
IndigoRidge
2026-08-27 16:21:23
(15 hours ago)
34.22.140.50 - - [27/Aug/2026:12:21:22 -0400] "GET /site/.git/config HTTP/1.0" 301 4865 "-" "crusade ...
show more
34.22.140.50 - - [27/Aug/2026:12:21:22 -0400] "GET /site/.git/config HTTP/1.0" 301 4865 "-" "crusader-worker/1.0"
34.22.140.50 - - [27/Aug/2026:12:21:22 -0400] "GET /app/.git/config HTTP/1.0" 301 4848 "-" "crusader-worker/1.0"
34.22.140.50 - - [27/Aug/2026:12:21:22 -0400] "GET /site/.git/config HTTP/1.1" 301 162 "-" "crusader-worker/1.0"
...
show less
Web App Attack
๐ฉ๐ช
Marc
2026-08-27 14:05:16
(17 hours ago)
34.22.140.50 - - [27/Aug/2026:16:05:15 +0200] "-" 408 4831 "-" "-" 34.22.140.50 - - [27/Aug/2026:16: ...
show more
34.22.140.50 - - [27/Aug/2026:16:05:15 +0200] "-" 408 4831 "-" "-" 34.22.140.50 - - [27/Aug/2026:16:05:15 +0200] "-" 408 4831 "-" "-" 34.22.140.50 - - [27/Aug/2026:16:05:15 +0200] "-" 408 4831 "-" "-"
show less
Brute-Force
๐ง๐ท
Peregrine
2026-08-27 12:02:25
(19 hours ago)
Fail2Ban ct101 Jail: tomcat-404 | Evidence: - 34.22.140.50 - - [27/Aug/2026:09:02:20 -0300] "GET /sr ...
show more
Fail2Ban ct101 Jail: tomcat-404 | Evidence: - 34.22.140.50 - - [27/Aug/2026:09:02:20 -0300] "GET /src/.git/config HTTP/1.1" 404 18193
- 34.22.140.50 - - [27/Aug/2026:09:02:20 -0300] "GET /api/.git/config HTTP/1.1" 404 18193
- 34.22.140.50 - - [27/Aug/2026:09:02:20 -0300] "GET /www/.git/config HTTP/1.1" 404 18193
- 34.22.140.50 - - [27/Aug/2026:09:02:20 -0300] "GET /html/.git/config HTTP/1.1" 404 18193
- 34.22.140.50 - - [27/Aug/2026:09:02:20 -0300] "GET /public/.git/config HTTP/1.1" 404 18193
show less
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 10:30:03
(21 hours ago)
suspicious request in access.log
Web App Attack
๐ซ๐ท
dynamix
2026-08-27 08:00:29
(23 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-08-27 07:24:57
(1 day ago)
[da.kdns.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/public/.git/config | /var/w ...
show more
[da.kdns.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/public/.git/config | /var/www/.git/config | /src/.git/config
show less
Hacking
Web App Attack
๐ฌ๐ง
consul.to
2026-08-27 05:49:23
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 05:27:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.22.140.50 (50.140.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.140.50 (50.140.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 01:27:12.848244 2026] [security2:error] [pid 16939:tid 16939] [client 34.22.140.50:46164] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nidusmbt.com"] [uri "/app/.git/config"] [unique_id "ao_KsL0iPIjB4DlEEI9FrwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 04:36:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.22.140.50 (50.140.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.140.50 (50.140.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 00:36:41.664601 2026] [security2:error] [pid 19410:tid 19410] [client 34.22.140.50:56664] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vittariacapital.vittariadesign.com"] [uri "/public/.git/config"] [unique_id "ao--2U417v8jOjC_Wj3FMwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ผ
tyetriiix
2026-08-27 04:22:25
(1 day ago)
Wazuh Alert Evidence: 34.22.140.50 - - [27/Aug/2026:04:22:22 +0000] "GET /.git/config HTTP/1.1" 403 ...
show more
Wazuh Alert Evidence: 34.22.140.50 - - [27/Aug/2026:04:22:22 +0000] "GET /.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0" "-" Origin: "-" CORS_Header: "-" Sent_allow_origin: "-"
show less
Web App Attack
๐ฎ๐น
VHosting
2026-08-27 04:00:06
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 03:19:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.22.140.50 (50.140.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.140.50 (50.140.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 23:19:20.139949 2026] [security2:error] [pid 25091:tid 25091] [client 34.22.140.50:46992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emiliofatuzzo.com"] [uri "/public/.git/config"] [unique_id "ao-suNmkEoICgby0n-xgEAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-08-27 01:47:04
(1 day ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack