๐จ๐ฆ
polycoda
2026-06-14 07:49:00
(5 hours ago)
AutoBlock: โ๏ธ Configuration File Access (Non Decay-Based)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 07:42:45
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.43.126 (126.43.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.43.126 (126.43.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 03:42:41.916099 2026] [security2:error] [pid 31814:tid 31826] [client 34.22.43.126:37932] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.daydreambeliever.us.randycameron.com"] [uri "/app/.git/config"] [unique_id "ai5bcdaYsF4b0C8Lq3HNEgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-14 07:36:25
(5 hours ago)
[SunJun1409:36:19.8140232026][security2:error][pid1095986:tid1096169][client34.22.43.126:0]ModSecuri ...
show more
[SunJun1409:36:19.8140232026][security2:error][pid1095986:tid1096169][client34.22.43.126:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"aidconsultancy.ch.81-17-25-250.cpanel.site\"][uri\"/www/.git/config\"][unique_id\"ai5Z8z2nneA9rz8mRfqW2QAAANU\"]
show less
Hacking
Web App Attack
๐บ๐ธ
mnsf
2026-06-14 07:06:54
(5 hours ago)
Too many Status 40X (12)
Scanning/Probing (30)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 06:33:31
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.43.126 (126.43.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.43.126 (126.43.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 02:33:24.890920 2026] [security2:error] [pid 3814:tid 3814] [client 34.22.43.126:44750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.karenbernsteinlaw.net"] [uri "/dist/.git/config"] [unique_id "ai5LNDQ_lnjXrgzzzRVC6wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-14 06:25:21
(6 hours ago)
(modsecurity) srv104 ModSecurity 34.22.43.126 (US/United States/126.43.22.34.bc.googleusercontent.co ...
show more
(modsecurity) srv104 ModSecurity 34.22.43.126 (US/United States/126.43.22.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 05:40:20
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.43.126 (126.43.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.43.126 (126.43.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 01:40:12.916579 2026] [security2:error] [pid 19456:tid 19456] [client 34.22.43.126:58744] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wendywonjungkim.com"] [uri "/backend/.git/config"] [unique_id "ai4-vM_DixCUCLW5ZJixBwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
AWW-Admin
2026-06-14 05:39:51
(7 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.22.43.126 (US/United States/126.43.2 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.22.43.126 (US/United States/126.43.22.34.bc.googleusercontent.com)
show less
SQL Injection
๐ณ๐ด
jad@
2026-06-14 04:56:50
(8 hours ago)
ThreatFeed automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure ...
show more
ThreatFeed automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 60 hits.
show less
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-14 04:49:04
(8 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-14 03:28:14
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.43.126 (126.43.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.43.126 (126.43.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 23:28:10.169285 2026] [security2:error] [pid 26557:tid 26557] [client 34.22.43.126:37080] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jchiggins.nashes.net"] [uri "/www/.git/config"] [unique_id "ai4fyl76DhD_ezs3QVbY4QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-14 03:20:05
(9 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ฎ๐น
VHosting
2026-06-14 03:20:03
(9 hours ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 02:45:33
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.43.126 (126.43.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.43.126 (126.43.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 22:45:30.893113 2026] [security2:error] [pid 15861:tid 15861] [client 34.22.43.126:50490] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "carlosmoltherapy.com.carlosmol.com"] [uri "/backend/.git/config"] [unique_id "ai4VypLOVbcgE0ur08DswAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
afleventoffice.com.au
2026-06-14 02:08:11
(10 hours ago)
GET /web/.git/config HTTP/1.1
Web App Attack