๐ฉ๐ช
gurnip
2026-09-29 18:08:21
(5 days ago)
Vulnerability probe of page /.git/config, not found on the server.
Brute-Force
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-29 14:15:02
(6 days ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-09-29 07:23:01
(6 days ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
akasolutions.de
2026-09-29 04:51:36
(6 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.26.136.21 (US/United States/21.136.2 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.26.136.21 (US/United States/21.136.26.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-29 00:36:57
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.26.136.21 (21.136.26.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.136.21 (21.136.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 20:36:50.247597 2026] [security2:error] [pid 17081:tid 17081] [client 34.26.136.21:37318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.josephshv.com"] [uri "/.git/config"] [unique_id "arsIIu_SZOpz0UDmIRna2QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 00:20:28
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.26.136.21 (21.136.26.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.136.21 (21.136.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 20:20:23.746432 2026] [security2:error] [pid 27847:tid 27847] [client 34.26.136.21:45308] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.josephnine.com"] [uri "/.git/config"] [unique_id "arsER3jsF88onIxSPvk4gQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 20:39:59
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.26.136.21 (21.136.26.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.136.21 (21.136.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 16:39:55.038414 2026] [security2:error] [pid 23388:tid 23388] [client 34.26.136.21:41786] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kbabykiss.srtmanagementservices.com"] [uri "/.git/config"] [unique_id "arrQmxxqfT4wJP9a4gW4qAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 14:30:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.26.136.21 (21.136.26.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.136.21 (21.136.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 10:30:49.141737 2026] [security2:error] [pid 6564:tid 6564] [client 34.26.136.21:47916] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "farmers123.com"] [uri "/.git/config"] [unique_id "arp6GT6i7Ed1irIP1PznGAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
paissangroup
2026-09-28 06:33:34
(1 week ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-28 05:09:33
(1 week ago)
[ns41.kdns.gr] httpd-config-scan: sites=www.medisto.gr; logs=/var/log/httpd/domains/medisto.gr.log; ...
show more
[ns41.kdns.gr] httpd-config-scan: sites=www.medisto.gr; logs=/var/log/httpd/domains/medisto.gr.log; samples=/.git/config | /.env | /.env.local
show less
Hacking
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-28 04:32:00
(1 week ago)
[ti-04al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-04al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.26.136.21 - - [28/Sep/2026:06:31:57 +0200] "GET /.git/config HTTP/1.1" 301 578 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-09-27 14:59:30
(1 week ago)
(modsecurity) srv104 ModSecurity 34.26.136.21 (US/United States/21.136.26.34.bc.googleusercontent.co ...
show more
(modsecurity) srv104 ModSecurity 34.26.136.21 (US/United States/21.136.26.34.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-27 14:54:35
(1 week ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-09-27 03:50:01
(1 week ago)
suspicious request in access.log
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-26 10:24:36
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking