🇹🇷
muratkaya665
2026-09-05 07:38:13
(11 hours ago)
IPS Attack Blocked by server.mura******.com.tr Fortigate-80E. Attack Name: Spring.Boot.Actuator.Unau ...
show more
IPS Attack Blocked by server.mura******.com.tr Fortigate-80E. Attack Name: Spring.Boot.Actuator.Unauthorized.Access. Dest Port: 80. Service: HTTP. Message: applications3: Spring.Boot.Actuator.Unauthorized.Access.
show less
Hacking
🇫🇷
SpaceHost-Server
2026-09-04 22:20:12
(21 hours ago)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 15:14:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 11:14:31.858355 2026] [security2:error] [pid 8797:tid 8797] [client 34.29.150.160:50588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.lahamradio.com"] [uri "/.env.old"] [unique_id "aprgV1qmNiTlFvte5BRbzQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-04 14:55:41
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇩🇪
Petros Stefanakis
2026-09-04 14:49:43
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.29.150.160 (US/United States/160.150 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.29.150.160 (US/United States/160.150.29.34.bc.googleusercontent.com)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-04 14:42:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 10:42:53.053190 2026] [security2:error] [pid 22288:tid 22356] [client 34.29.150.160:50792] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sandiegosamsolo.com.workconfident.com"] [uri "/.env"] [unique_id "aprY7erYmpX3tlK6b6xnTAAAAYc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Aetherweb Ark
2026-09-04 14:17:40
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 34.29.150.160 (US/United States/160.150.29.34.b ...
show more
(mod_security) mod_security (id:949110) triggered by 34.29.150.160 (US/United States/160.150.29.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 14:02:37
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 10:02:30.888584 2026] [security2:error] [pid 32137:tid 32137] [client 34.29.150.160:43248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pharmaceuticalsalescareerhub.com"] [uri "/wp-config.php.swp"] [unique_id "aprPdmoVHllNppcxK0k7gAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 13:46:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 09:45:55.902764 2026] [security2:error] [pid 31770:tid 31770] [client 34.29.150.160:57082] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "agrollum.com"] [uri "/.env.production"] [unique_id "aprLkxV275gruLhHlqyjTAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 13:23:51
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 09:23:43.514175 2026] [security2:error] [pid 10489:tid 10489] [client 34.29.150.160:48924] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cmexico.co"] [uri "/.env.dev"] [unique_id "aprGX6JTxyGmHuLOe1OU0gAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 12:32:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 08:32:01.541195 2026] [security2:error] [pid 26506:tid 26506] [client 34.29.150.160:58004] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "givemethemic.org"] [uri "/.env.bak"] [unique_id "apq6QVlmvHgZVNMF6Zm3agAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-04 11:05:57
(1 day ago)
Scanning/Probing (20)
Brute-Force
Web App Attack
🇸🇪
vaia.cloud
2026-09-04 11:05:04
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇫🇷
masterguru
2026-09-04 10:23:19
(1 day ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 10:01:03
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.29.150.160 (160.150.29.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 06:00:56.594465 2026] [security2:error] [pid 16845:tid 16845] [client 34.29.150.160:44828] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.newcastle91.org"] [uri "/.env.old"] [unique_id "apqW2E2PLTaKPDmqJ66tnQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack