🇫🇮
paissangroup
2026-08-29 10:45:08
(1 day ago)
Multiple WAF Violations
Web App Attack
🇫🇷
Little Iguana
2026-08-29 09:27:03
(1 day ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
🇫🇷
masterguru
2026-08-29 06:31:22
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 02:19:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.23.124.79 (79.124.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.124.79 (79.124.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 22:19:44.056258 2026] [security2:error] [pid 30901:tid 30901] [client 34.23.124.79:43668] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jbernsteinpc.com"] [uri "/html/.git/config"] [unique_id "apJBwI0tvswIKJ8plW6USQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-08-28 21:27:10
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 19:42:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.23.124.79 (79.124.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.124.79 (79.124.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 15:42:33.616715 2026] [security2:error] [pid 6677:tid 6677] [client 34.23.124.79:36276] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tankercontrol.com"] [uri "/app/.git/config"] [unique_id "apHkqbu1HWbtVbvasFXoQgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
pm33
2026-08-28 17:49:00
(1 day ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 16:54:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.23.124.79 (79.124.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.124.79 (79.124.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 12:54:14.761522 2026] [security2:error] [pid 26569:tid 26569] [client 34.23.124.79:38278] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "noscentpro.com"] [uri "/app/.git/config"] [unique_id "apG9NvVXfnsXrerIoRQ_YgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-08-28 13:31:20
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
🇩🇪
stinpriza
2026-08-28 12:56:03
(2 days ago)
common Web Exploits being scanned
Web App Attack
🇫🇷
dynamix
2026-08-28 10:41:23
(2 days ago)
Multiple WAF Violations
Web App Attack
🇺🇸
mnsf
2026-08-28 02:05:24
(2 days ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
🇺🇸
zwebvigil
2026-08-27 20:20:14
(2 days ago)
34.23.124.79 [27/Aug/2026:13:20:14 -0700] "GET /.git/config HTTP/1.1" 404 2687 "-" port=42378 "crus ...
show more
34.23.124.79 [27/Aug/2026:13:20:14 -0700] "GET /.git/config HTTP/1.1" 404 2687 "-" port=42378 "crusader-worker/1.0" "-" "-" "<ipaddr>" 1087
34.23.124.79 [27/Aug/2026:13:20:14 -0700] "GET /app/.git/config HTTP/1.1" 404 2695 "-" port=42382 "crusader-worker/1.0" "-" "-" "<ipaddr>" 5873
34.23.124.79 [27/Aug/2026:13:20:14 -0700] "GET /src/.git/config HTTP/1.1" 404 2695 "-" port=42390 "crusader-worker/1.0" "-" "-" "<ipaddr>" 1407
34.23.124.79 [27/Aug/2026:13:20:14 -0700] "GET /www/.git/config HTTP/1.1" 404 2695 "-" port=42420 "crusader-worker/1.0" "-" "-" "<ipaddr>" 1492
34.23.124.79 [27/Aug/2026:13:20:14 -0700] "GET /var/www/.git/config HTTP/1.1" 404 2703 "-" port=42468 "crusader-worker/1.0" "-" "-" "<ipaddr>" 1193
34.23.124.79 [27/Aug/2026:13:20:14 -0700] "GET /site/.git/config HTTP/1.1" 404 2697 "-" port=42438 "crusader-worker/1.0" "-" "-
show less
Web App Attack
🇩🇪
Séfora Srl
2026-08-27 14:07:21
(2 days ago)
crowdsecurity/http-probing detected by CrowdSec
Web App Attack
🇫🇮
YF
2026-08-27 12:00:44
(3 days ago)
Git config exposure probe
Web App Attack