๐บ๐ธ
micropedro
2026-09-19 08:44:44
(1 day ago)
4 incidents: web scanning/attack, HTTP flood/DDoS. First: 2026-09-18 22:29, Last: 2026-09-19 04:44 U ...
show more
4 incidents: web scanning/attack, HTTP flood/DDoS. First: 2026-09-18 22:29, Last: 2026-09-19 04:44 UTC. Triggers: nginx-limit-req,nginx-sensitive-files,recidive.
show less
Hacking
Brute-Force
Web App Attack
DDoS Attack
๐ฉ๐ช
XICTRON
2026-09-18 19:50:05
(1 day ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
๐ณ๐ฑ
middelkoopcc
2026-09-18 19:47:00
(1 day ago)
2026-09-18 21:45:24 GET /.aws/credentials [301] && 2026-09-18 21:45:24 GET /__/firebase/init.json [3 ...
show more
2026-09-18 21:45:24 GET /.aws/credentials [301] && 2026-09-18 21:45:24 GET /__/firebase/init.json [301] && 2026-09-18 21:45:24 GET /.next/.env [301] && 179 more within 20 minutes
show less
Web App Attack
๐ท๐บ
Mga Admin
2026-09-18 18:48:48
(1 day ago)
[Sat Sep 19 01:48:46.908105 2026] [authz_core:error] [pid 1447128:tid 1447995] [client 34.23.249.244 ...
show more
[Sat Sep 19 01:48:46.908105 2026] [authz_core:error] [pid 1447128:tid 1447995] [client 34.23.249.244:37438] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-18 18:37:35
(1 day ago)
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34. ...
show more
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.23.249.244 - - \[18/Sep/2026:20:37:13 +0200\] "GET /.aws/credentials HTTP/1.1" 404 518 "-" "Mozilla/5.0 AppleWebKit/537.36 \(KHTML, like Gecko\; compatible\; Claude-SearchBot/1.0\; [email protected] \)"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-18 18:00:19
(1 day ago)
[cb-13al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apac ...
show more
[cb-13al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apache-404. Example: 34.23.249.244 - - [18/Sep/2026:20:00:09 +0200] "GET /.aws/credentials HTTP/2.0" 404 1878 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ChatGPT-User/1.0; +https://openai.com/bot)"
34.23.249.244 - - [18/Sep/2026:20:00:09 +0200] "GET /z9x8c7v6b5-debug-trigger-account.phoenixgolfservices.com HTTP/2.0" 404 1855 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ChatGPT-User/1.0; +https://openai.com/bot)"
34.23.249.244 - - [18/Sep/2026:20:00:09 +0200] "GET /asset-manifest.json HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Mobile Safari/537.36 EdgA/151.0.0.0"
34.23.249.244 - - [18/Sep/2026:20:00:09 +0200] "GET /
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-18 17:35:28
(2 days ago)
[ti-24al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-24al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.23.249.244 - - [18/Sep/2026:19:35:12 +0200] "GET /.env.bak HTTP/2.0" 403 547 "-" "Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave.com/search/)"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-18 13:21:43
(2 days ago)
Portscan: TCP/8080 (7x), TCP/8443 (7x)
Port Scan
๐ง๐ท
Caue Henrique
2026-09-18 13:00:37
(2 days ago)
Multiplewebserver500errorcode
Web Spam
Web App Attack
๐จ๐ฆ
polycoda
2026-09-18 12:38:10
(2 days ago)
AutoBlock: ๐ก Port Scan (Non Decay-Based)
Port Scan
๐ง๐ช
voormedia
2026-09-18 11:53:22
(2 days ago)
Accessed trap at '/.bash_profile'
Web App Attack
๐ฌ๐ง
consul.to
2026-09-18 11:26:51
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ฑ๐ป
garmtech.com
2026-09-18 10:56:31
(2 days ago)
Attempted access to sensitive endpoint (/login) detected. Automated scan or unauthorized probing.
Web App Attack
๐ณ๐ฑ
0xffffffff
2026-09-18 10:56:22
(2 days ago)
[2026-09-18 13:56:19.993298] [authz_core:error] [pid 323532:tid 131438008276672] [client 34.23.249.2 ...
show more
[2026-09-18 13:56:19.993298] [authz_core:error] [pid 323532:tid 131438008276672] [client 34.23.249.244:0] AH01630: client denied by server configuration: /var/www/*/.git-credentials, referer https://webhooks.*/.git-credentials , error_notes:config-files , URI:'/.git-credentials'
[2026-09-18 13:56:19.999891] [authz_core:error] [pid 323531:tid 131437823448768] [client 34.23.249.244:0] AH01630: client denied by server configuration: /var/www/*/.gitconfig, referer https://webhooks.*/.gitconfig , error_notes:config-files , URI:'/.gitconfig'
[2026-09-18 13:56:19.999891] [authz_core:error] [pid 323531:tid 131437823448768] [client 34.23.249.244:0] AH01630: client denied by server configuration: /var/www/*/.gitconfig, referer https://webhooks.*/.gitconfig , error_notes:config-files , URI:'/.gitconfig'
[2026-09-18 13:56:20.009484] [authz_core:error] [pid 323531:tid 131437899130560] [client 34.23.249.244:0] AH01630: client denied by server configuration: /var/www/*/.aws, referer https://webhooks.*/.aws/credentials , err
show less
Web App Attack
Bad Web Bot
๐ฉ๐ช
updown.io
2026-09-18 10:10:34
(2 days ago)
{"level":"info","ts":1789726230.8717406,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1789726230.8717406,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.23.249.244","remote_port":"52120","client_ip":"34.23.249.244","proto":"HTTP/2.0","method":"GET","host":"status.selonija.lv","uri":"/assets/manifest.json","headers":{"Accept-Encoding":["gzip, deflate, br, zstd"],"Accept-Language":["en-US,en;q=0.9"],"Priority":["u=1"],"Sec-Ch-Ua-Mobile":["?0"],"User-Agent":["Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36 Edg/151.0.0.0"],"Sec-Ch-Ua":["\"Not=A?Brand\";v=\"99\", \"Microsoft Edge\";v=\"151\", \"Chromium\";v=\"151\""],"Sec-Fetch-Site":["same-origin"],"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"Sec-Ch-Ua-Platform":["\"Windows\""],"Accept":["*/*"],"Sec-Fetch-Dest":["script"],"Sec-Fetch-Mode":["no-cors"],"X-Nextjs-Da
...
show less
DDoS Attack
Web App Attack