๐ง๐ช
sid3windr
2026-08-21 08:48:35
(15 hours ago)
GET /.git/config (Tarpitted for 1d15h9m26s, wasted 8.06MB)
Web App Attack
Anonymous
2026-08-20 04:31:54
(1 day ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
Charlesiv
2026-08-19 20:01:53
(2 days ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
Timestamp: 2026-08-19T19:37:29Z
Ray ID: a2db9cf74c75b946
UA: Empty string
show less
Bad Web Bot
๐ฉ๐ช
Bedios GmbH
2026-08-19 19:41:41
(2 days ago)
Login credentials theft attempt
Hacking
๐จ๐ญ
blinx
2026-08-19 19:35:33
(2 days ago)
Suspicious activity detected by Modsecurity
Web Spam
Port Scan
Hacking
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-19 19:29:06
(2 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: www.teddypot.website | URI: /.git/config | UA: Unknown User-Agent | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 19:23:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.24.76.226 (226.76.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.76.226 (226.76.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 15:23:12.579451 2026] [security2:error] [pid 17526:tid 17526] [client 34.24.76.226:38594] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web27.dnchosting.com"] [uri "/.git/config"] [unique_id "aoYCoIUD1sYu2ly_AHc-QAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-08-19 19:04:49
(2 days ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐ฉ๐ช
crypto i trust, hold i must
2026-08-19 19:04:24
(2 days ago)
Web scanner path: /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 19:01:45
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.24.76.226 (226.76.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.76.226 (226.76.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 15:01:38.802989 2026] [security2:error] [pid 4523:tid 4523] [client 34.24.76.226:60016] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fasllc.rooksfamily.com"] [uri "/.git/config"] [unique_id "aoX9knAe02LY6kbuHEPyLQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
seniorlinuxadmin
2026-08-19 18:40:36
(2 days ago)
34.24.76.226 - - [18/Aug/2026:07:17:48 +0100] "GET /.git/config HTTP/1.1" 403 158 "-" "-"
Port Scan
Web App Attack
๐ฉ๐ช
Blexyel
2026-08-19 18:19:36
(2 days ago)
34.24.76.226 - - [19/Aug/2026:20:19:36 +0200] "GET /.git/config HTTP/1.1" 404 435 "-" "-" "share.fom ...
show more
34.24.76.226 - - [19/Aug/2026:20:19:36 +0200] "GET /.git/config HTTP/1.1" 404 435 "-" "-" "share.fomx.gay"
...
show less
Brute-Force
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-08-19 18:16:14
(2 days ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 18:09:43
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.24.76.226 (226.76.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.76.226 (226.76.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 14:09:37.070985 2026] [security2:error] [pid 32346:tid 32346] [client 34.24.76.226:37784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web221.dnchosting.com"] [uri "/.git/config"] [unique_id "aoXxYWXnxmH5LfcEk9xedgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 17:53:52
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.24.76.226 (226.76.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.76.226 (226.76.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 13:53:47.900560 2026] [security2:error] [pid 1924:tid 1940] [client 34.24.76.226:46284] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ryoplan.kylight.com"] [uri "/.git/config"] [unique_id "aoXtq6dZkpyTEOj5Pk31BgAAAUo"]
show less
Brute-Force
Bad Web Bot
Web App Attack