๐บ๐ธ
TPI-Abuse
2026-08-27 19:10:25
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.23.141.97 (97.141.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.141.97 (97.141.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 15:10:20.607569 2026] [security2:error] [pid 9625:tid 9625] [client 34.23.141.97:53492] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "icafe.bz"] [uri "/site/.git/config"] [unique_id "apCLnNovnCpw38T8IZxZIAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-08-27 18:19:16
(3 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure, scanner_ua. Observed by 1 sensor(s); 12 hits.
show less
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-08-27 17:58:52
(3 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 15:35:53
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.23.141.97 (97.141.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.141.97 (97.141.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 11:35:50.452313 2026] [security2:error] [pid 19959:tid 19959] [client 34.23.141.97:55536] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.noemontes.com"] [uri "/var/www/.git/config"] [unique_id "apBZVo3TRwVwOcw2i6ZnNgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Petros Stefanakis
2026-08-27 14:10:08
(7 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.23.141.97 (US/United States/97.141.2 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.23.141.97 (US/United States/97.141.23.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-08-27 13:46:29
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.23.141.97 (97.141.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.141.97 (97.141.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 09:46:25.409777 2026] [security2:error] [pid 7224:tid 7224] [client 34.23.141.97:56854] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yanlidesign.com"] [uri "/wordpress/.git/config"] [unique_id "apA_sXJX_zJRt-Pk_594AwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-27 09:23:26
(12 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 08:56:12
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.23.141.97 (97.141.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.141.97 (97.141.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 04:56:04.297322 2026] [security2:error] [pid 30149:tid 30149] [client 34.23.141.97:39108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "onevoicefoundationlb.org"] [uri "/html/.git/config"] [unique_id "ao_7pC63LFcOf9RIjRlSNwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-08-27 08:09:34
(13 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 06:47:33
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.23.141.97 (97.141.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.141.97 (97.141.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 02:47:25.226798 2026] [security2:error] [pid 2832:tid 2858] [client 34.23.141.97:56890] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wls.bestofthis.com"] [uri "/html/.git/config"] [unique_id "ao_dfef5TEl_1BJ1QHQBdwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-27 06:39:44
(15 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /var/www/.git/config (+11 more) | 2026-08-27 06:39 UTC
show less
Hacking
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-27 06:35:03
(15 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 06:17:55
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.23.141.97 (97.141.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.141.97 (97.141.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 02:17:48.286795 2026] [security2:error] [pid 2452:tid 2452] [client 34.23.141.97:49014] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stthomastrainer.com"] [uri "/backend/.git/config"] [unique_id "ao_WjHQsZHsX27G2lu7mqAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
taivas.nl
2026-08-27 04:32:36
(17 hours ago)
Many_bad_calls
Web App Attack
๐ง๐ช
taivas.nl
2026-08-27 03:02:10
(18 hours ago)
Bad_requests
Bad Web Bot