🇦🇺
A.i.D.A.N.N
2026-09-07 20:35:31
(7 hours ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web application attack detected
Web App Attack
🇺🇸
agenciahypelab.com.br
2026-09-07 20:08:43
(8 hours ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
🇳🇱
BlueWire Hosting
2026-09-07 20:03:48
(8 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
🇸🇬
Cloudkul Cloudkul
2026-09-07 19:54:43
(8 hours ago)
Attempted Brute Force on our application
Brute-Force
Web App Attack
🇫🇮
Shaik Sai Meera
2026-09-07 19:50:10
(8 hours ago)
IM360 WAF: Hidden file access
Brute-Force
🇺🇸
TPI-Abuse
2026-09-07 19:25:57
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.29.27.75 (75.27.29.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.29.27.75 (75.27.29.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:25:50.545655 2026] [security2:error] [pid 3097:tid 3097] [client 34.29.27.75:41202] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.avmarep.com"] [uri "/@fs/../../.env"] [unique_id "ap8Pvvk-O3q_9CJS_7U7EAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
netclix.gr
2026-09-07 19:12:49
(8 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.29.27.75 (US/United States/75.27.29. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.29.27.75 (US/United States/75.27.29.34.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-07 18:37:15
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.29.27.75 (75.27.29.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.29.27.75 (75.27.29.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 14:37:11.373958 2026] [security2:error] [pid 8861:tid 8861] [client 34.29.27.75:31710] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jsw4.net"] [uri "/@fs/root/.env"] [unique_id "ap8EV5unD1H4qIiSpdQf2gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-07 18:20:17
(9 hours ago)
Excessive 404/403 errors
Brute-Force
🇺🇸
TPI-Abuse
2026-09-07 17:58:39
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.29.27.75 (75.27.29.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.29.27.75 (75.27.29.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 13:58:35.251065 2026] [security2:error] [pid 11734:tid 11734] [client 34.29.27.75:14096] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.arzoma.com"] [uri "/@fs/.env"] [unique_id "ap77S-KaP79XyqSrWN3sOQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FD-IX
2026-09-07 17:38:20
(10 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 16:54:25
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.29.27.75 (75.27.29.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.29.27.75 (75.27.29.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 12:54:21.277817 2026] [security2:error] [pid 22137:tid 22137] [client 34.29.27.75:18268] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.desertrosedoves.com"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252froot/.env"] [unique_id "ap7sPXus81xoa7I7MwbmhQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 16:52:52
(11 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-07 16:38:23
(11 hours ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
🇩🇪
on-com
2026-09-07 16:28:58
(11 hours ago)
URL scan
Brute-Force
Web App Attack