πΊπΈ
craudiovizai
2026-08-22 06:30:21
(14 hours ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked a ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
π¬π§
openstrike.co.uk
2026-08-22 05:14:58
(15 hours ago)
3 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
π¬π§
thetomtaylor.co.uk
2026-08-22 05:07:00
(15 hours ago)
Fail2Ban - [NGINX]WordPress Logins Sniffings on nginx-wordpress-sniffer ... [mx02]
Bad Web Bot
Web App Attack
π¬π§
thetomtaylor.co.uk
2026-08-22 04:12:04
(16 hours ago)
Fail2Ban - [NGINX]WordPress Logins Sniffings on nginx-wordpress-sniffer ... [ice01,ice02,wa01,wa02]
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 02:16:48
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.86.28 (28.86.24.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.86.28 (28.86.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 22:16:44.678722 2026] [security2:error] [pid 27296:tid 27296] [client 34.24.86.28:48274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "creektech.com"] [uri "/.git/config"] [unique_id "aokGjIQVxXZ05m327Mb3CAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-08-22 02:05:11
(18 hours ago)
Abuse Detected (38)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 01:44:59
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.86.28 (28.86.24.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.86.28 (28.86.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 21:44:52.526001 2026] [security2:error] [pid 28558:tid 28558] [client 34.24.86.28:33066] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "crearcuestionarios.com.creartest.com"] [uri "/.git/config"] [unique_id "aoj_FD2hCocC5cUfup5z7AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
BlueWire Hosting
2026-08-22 00:56:35
(19 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-21 19:35:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.24.86.28 (28.86.24.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.86.28 (28.86.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 15:35:48.037192 2026] [security2:error] [pid 2758:tid 2758] [client 34.24.86.28:52034] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "expatcolombia.net"] [uri "/.git/config"] [unique_id "aoiolG5-PNDx3nLaD61ItwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-21 19:20:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.24.86.28 (28.86.24.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.86.28 (28.86.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 15:20:14.447538 2026] [security2:error] [pid 1773:tid 1773] [client 34.24.86.28:48400] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "exhaustthelimits.org"] [uri "/.git/config"] [unique_id "aoik7ovEDhratrGdifsihgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-21 19:07:06
(1 day ago)
Automated web scanner. Requested suspicious paths: /.git/config. UTC: 2026-08-21 18:51:52.
Web App Attack
π¬π§
thetomtaylor.co.uk
2026-08-21 19:07:01
(1 day ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice01,ice02,wa01,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
Epimetheus
2026-08-21 19:00:22
(1 day ago)
Unauthorized access attempts:
[GET] /.git/config
UA: Unknown
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-21 18:32:32
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.24.86.28 (28.86.24.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.86.28 (28.86.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 14:32:24.657051 2026] [security2:error] [pid 16252:tid 16281] [client 34.24.86.28:54212] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ewoolsey.com"] [uri "/.git/config"] [unique_id "aoiZuFaGCIxJye3yKaglugAAANU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-21 18:27:03
(1 day ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack