๐บ๐ธ
TPI-Abuse
2026-09-03 07:23:16
(9 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 03:23:12.798191 2026] [security2:error] [pid 25326:tid 25326] [client 34.22.71.173:38072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "veneye.lucid-events.com"] [uri "/api/.git/config"] [unique_id "apkgYF9TrKt6XbllXOrwjgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
craudiovizai
2026-09-03 06:31:28
(1 hour ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked a ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
mnsf
2026-09-03 05:05:39
(2 hours ago)
Too many Status 40X (12)
Scanning/Probing (24)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 03:28:04
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 23:28:00.505652 2026] [security2:error] [pid 32622:tid 32622] [client 34.22.71.173:59200] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "katemcleod.kathrynmcbride.com"] [uri "/wordpress/.git/config"] [unique_id "apjpQDWq13MH3NFEDU2OcwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 03:00:38
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 23:00:32.177741 2026] [security2:error] [pid 15087:tid 15087] [client 34.22.71.173:34352] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kittyloveschai.com"] [uri "/site/.git/config"] [unique_id "apji0KuiZBLe8a6B0d3hAgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 01:50:19
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:50:11.541860 2026] [security2:error] [pid 25499:tid 25499] [client 34.22.71.173:46008] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.drivernine.com"] [uri "/src/.git/config"] [unique_id "apjSU_ct_v2Anqkvvl_gEgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 22:43:38
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 18:43:30.890817 2026] [security2:error] [pid 24515:tid 24515] [client 34.22.71.173:41944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "haroturkiye.chevronparkett.com"] [uri "/var/www/.git/config"] [unique_id "apimkoHZap9OaHi0z0CGBAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
raph
2026-09-02 19:06:39
(12 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 18:38:00
(12 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 14:37:53.404967 2026] [security2:error] [pid 5149:tid 5149] [client 34.22.71.173:60976] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "qualiabookings.com"] [uri "/var/www/.git/config"] [unique_id "aphtAfWlMBJBLCxJMk8xEQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 18:34:52
(12 hours ago)
Scenarios: http-sensitive-files
Total requests: 24
Web App Attack
๐ฉ๐ช
YF
2026-09-02 16:30:18
(15 hours ago)
Git config exposure probe
Web App Attack
๐ช๐ธ
masterguru
2026-09-02 16:02:06
(15 hours ago)
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110- ...
show more
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110-122)
show less
Hacking
๐ซ๐ท
dynamix
2026-09-02 13:38:39
(17 hours ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-02 08:21:56
(23 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 07:43:12
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.71.173 (173.71.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 03:43:06.319374 2026] [security2:error] [pid 3988:tid 3988] [client 34.22.71.173:35808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rlsills.com"] [uri "/.git/config"] [unique_id "apfTijRg1IbC-MkCanJBWAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack