Anonymous
2026-09-12 05:54:00
(2 hours ago)
Next.js bypass (CVE-2025-29927)
Web App Attack
Hacking
🇸🇪
vaia.cloud
2026-09-11 22:30:02
(9 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
Anonymous
2026-09-11 19:14:19
(12 hours ago)
Aggressive web scan
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 19:13:25
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.27.206.109 (109.206.27.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.27.206.109 (109.206.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 15:13:20.123424 2026] [security2:error] [pid 490346:tid 490346] [client 34.27.206.109:35640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "skotam.com"] [uri "/uploads../.env"] [unique_id "aqRS0DAjVRjq-3nZNEO-3wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
dot.mg
2026-09-11 19:12:03
(12 hours ago)
Bad behaviour
Web Spam
🇺🇸
entangled_mongoose
2026-09-11 19:02:24
(12 hours ago)
Probed /wp-json.
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 18:56:41
(12 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.27.206.109 (109.206.27.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.27.206.109 (109.206.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 14:56:37.948886 2026] [security2:error] [pid 9645:tid 9645] [client 34.27.206.109:46182] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||skintormint.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "skintormint.com"] [uri "/z9x8c7v6b5-debug-trigger-skintormint.com"] [unique_id "aqRO5ZEYRV0efo9Ijw1tPQAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-11 18:46:24
(13 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 18:33:48
(13 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.27.206.109 (109.206.27.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.27.206.109 (109.206.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 14:33:42.408874 2026] [security2:error] [pid 7923:tid 7968] [client 34.27.206.109:41922] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||skillscredentials.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "skillscredentials.com"] [uri "/z9x8c7v6b5-debug-trigger-skillscredentials.com"] [unique_id "aqRJhtWiCV4UTOOKti7R1AAAAVg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 18:06:27
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.27.206.109 (109.206.27.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.27.206.109 (109.206.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 14:06:22.237102 2026] [security2:error] [pid 1876:tid 1876] [client 34.27.206.109:52264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "skanksex.com"] [uri "/.env.js"] [unique_id "aqRDHk6lwtCXoiAk3HEEDAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-11 18:05:24
(13 hours ago)
Abuse Detected (3)
Brute-Force
Web App Attack
🇸🇪
vaia.cloud
2026-09-11 17:55:02
(14 hours ago)
crowdsecurity/http-cve-2021-41773
Brute-Force
Web App Attack
🇩🇪
netclix.gr
2026-09-11 17:20:19
(14 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.27.206.109 (US/United States/109.206 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.27.206.109 (US/United States/109.206.27.34.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-11 17:15:07
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.27.206.109 (109.206.27.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.27.206.109 (109.206.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 13:15:01.881069 2026] [security2:error] [pid 21508:tid 21508] [client 34.27.206.109:53386] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sixsensehealing.com"] [uri "/.git/config"] [unique_id "aqQ3FShiXxPtzOzucn6bWwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-11 17:05:07
(14 hours ago)
Multiple WAF Violations
Web App Attack