๐ฉ๐ช
BlueWire Hosting
2026-08-28 12:43:06
(55 minutes ago)
Aggressive scanning resulting into 404
Bad Web Bot
๐ฌ๐ง
kie
2026-08-28 12:31:57
(1 hour ago)
28-08-2026:12:31:09UTC [Nginx Web Server] Suspicious web request: path:/.env path:/actuator/ path:/w ...
show more
28-08-2026:12:31:09UTC [Nginx Web Server] Suspicious web request: path:/.env path:/actuator/ path:/wp-config (15 request(s)).
show less
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-08-28 12:21:02
(1 hour ago)
[FriAug2814:20:58.5356552026][security2:error][pid1333692:tid1334685][client34.27.117.6:0]ModSecurit ...
show more
[FriAug2814:20:58.5356552026][security2:error][pid1333692:tid1334685][client34.27.117.6:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.ristrutturazione-case.ch.xn--walter-wrndli-pmb.ch\"][uri\"/.env.prod\"][unique_id\"apF9KpkPFRQtqsbw2_ImDgAAAIk\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 12:19:31
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.27.117.6 (6.117.27.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.27.117.6 (6.117.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 08:19:25.206282 2026] [security2:error] [pid 28004:tid 28004] [client 34.27.117.6:32920] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.phsna.org"] [uri "/.env.local"] [unique_id "apF8zRH4D6mXw2vRjHaGRwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-08-28 12:14:43
(1 hour ago)
csagent: score 20.8: 404 noise floor x3, secrets grab x1, wp-config backup grab x1; 1 domain(s) in 0 ...
show more
csagent: score 20.8: 404 noise floor x3, secrets grab x1, wp-config backup grab x1; 1 domain(s) in 0s
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 11:59:03
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.27.117.6 (6.117.27.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.27.117.6 (6.117.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 07:58:54.024666 2026] [security2:error] [pid 23972:tid 23972] [client 34.27.117.6:41836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.nick929.summitmediawv.com"] [uri "/.env.production"] [unique_id "apF3_luwaXgeT3zkAIr5uAAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Aufpasser_1973
2026-08-28 11:45:06
(1 hour ago)
Fail2Ban Caddy: Web App Attack, /.env
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-28 11:42:50
(1 hour ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 11:29:12
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.27.117.6 (6.117.27.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.27.117.6 (6.117.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 07:29:05.988904 2026] [security2:error] [pid 12088:tid 12088] [client 34.27.117.6:44470] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gerrytolentino.praemiumtech.com"] [uri "/.env.example"] [unique_id "apFxAQUNoaC9eV-kCmRvtwAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 10:51:35
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.27.117.6 (6.117.27.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.27.117.6 (6.117.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 06:51:29.449789 2026] [security2:error] [pid 15470:tid 15470] [client 34.27.117.6:59490] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wooferhound.com"] [uri "/wp-config.php.bak"] [unique_id "apFoMf8KuFoudwsQdOG0KwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-28 10:44:38
(2 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
Anonymous
2026-08-27 22:19:31
(15 hours ago)
WordPress Enforcement Protection.
Web App Attack
๐ณ๐ฑ
Savvii
2026-08-27 21:47:51
(15 hours ago)
15 attempts against mh-modsecurity-ban on comet
Brute-Force
Web App Attack
๐ง๐พ
lns.bz
2026-08-27 21:32:54
(16 hours ago)
Too many 404 requests [BY]
Web App Attack
๐ซ๐ท
dynamix
2026-08-27 21:23:25
(16 hours ago)
Multiple WAF Violations
Web App Attack