🇺🇸
TPI-Abuse
2026-09-09 21:45:06
(27 seconds ago)
(mod_security) mod_security (id:210492) triggered by 34.27.139.96 (96.139.27.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.27.139.96 (96.139.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 17:45:02.330149 2026] [security2:error] [pid 14129:tid 14129] [client 34.27.139.96:49620] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sabri.es"] [uri "/.git/config"] [unique_id "aqHTXkXgj0RoYeR-jKz8jQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-09 20:55:02
(50 minutes ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇩🇪
konseptit
2026-09-09 20:52:22
(53 minutes ago)
(mod_security) mod_security triggered on hostname [redacted] 34.27.139.96 (US/United States/96.139.2 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.27.139.96 (US/United States/96.139.27.34.bc.googleusercontent.com)
show less
SQL Injection
🇫🇷
Octopuce
2026-09-09 20:46:47
(58 minutes ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 19:55:17
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.27.139.96 (96.139.27.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.27.139.96 (96.139.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 15:55:10.526036 2026] [security2:error] [pid 10476:tid 10476] [client 34.27.139.96:58174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "saboun.com"] [uri "/.git/config"] [unique_id "aqG5nkNg_3-x53lwPHGIHgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-09 17:05:38
(4 hours ago)
Too many Status 40X (11)
Scanning/Probing (11)
Brute-Force
Web App Attack
🇵🇱
strefapi_com
2026-09-09 15:55:31
(5 hours ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
Anonymous
2026-09-09 15:51:26
(5 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 13:07:47
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.27.139.96 (96.139.27.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.27.139.96 (96.139.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 09:07:40.540589 2026] [security2:error] [pid 22505:tid 22505] [client 34.27.139.96:45578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "newcastle91.org"] [uri "/.git/config"] [unique_id "aqFaHFhg8SkK5ghqyPJ02QAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-09 13:00:05
(8 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 11:33:48
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.27.139.96 (96.139.27.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.27.139.96 (96.139.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 07:33:44.359061 2026] [security2:error] [pid 18473:tid 18473] [client 34.27.139.96:36572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "newcangroup.com"] [uri "/.git/config"] [unique_id "aqFEGE7ptxCnC0fR_FrTRAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-09 10:03:08
(11 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 07:48:03
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.27.139.96 (96.139.27.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.27.139.96 (96.139.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 03:47:55.931542 2026] [security2:error] [pid 30795:tid 30795] [client 34.27.139.96:60998] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "karyaenigma.com"] [uri "/.git/config"] [unique_id "aqEPK4dRqouEF4sJfu-XoQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-09 07:26:26
(14 hours ago)
Excessive 404/403 errors
Brute-Force
🇳🇱
debestelapp
2026-09-09 07:20:13
(14 hours ago)
Web App Attack