Anonymous
2026-09-26 13:45:11
(6 minutes ago)
Observed scanned 1 known-sensitive endpoint(s), e.g.: /.git/config
Bad Web Bot
Web App Attack
๐บ๐ธ
craudiovizai
2026-09-26 06:30:42
(7 hours ago)
Automated honeypot detection. blocked ip against a Next.js application. Paths: /.git/config. Blocked ...
show more
Automated honeypot detection. blocked ip against a Next.js application. Paths: /.git/config. Blocked at the edge.
show less
Bad Web Bot
Anonymous
2026-09-25 23:46:36
(14 hours ago)
Web probing (2 hits in 24h) on default-vhost,mergel.nu: sensitive-path scans and/or 404 bursts. Repo ...
show more
Web probing (2 hits in 24h) on default-vhost,mergel.nu: sensitive-path scans and/or 404 bursts. Reported by CRMON.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 23:08:45
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 19:08:41.223060 2026] [security2:error] [pid 7773:tid 7880] [client 34.30.220.243:60764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "merart.com"] [uri "/.git/config"] [unique_id "arb--Y30uNv3Faj_t53lxQAAAdg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Anytech
2026-09-25 22:51:44
(15 hours ago)
Blocked by ConnMonitor
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 22:49:35
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 18:49:28.351544 2026] [security2:error] [pid 24985:tid 24985] [client 34.30.220.243:58208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "menu.pizzadata.com"] [uri "/.git/config"] [unique_id "arb6eEVKhZUFFr4Nb4b2EAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-25 22:42:41
(15 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
LRob
2026-09-25 22:38:38
(15 hours ago)
This address is looking for secret files on our sites: .git directories, .env files, credential and ...
show more
This address is looking for secret files on our sites: .git directories, .env files, credential and configuration files, database dumps, backups. This is a targeted search for credentials to break into the sites, blocked at the first request. Please check the machine behind it for an attack tool or malware. | method: GET | path: /.git/config | 2026-09-25 22:38 UTC
show less
Hacking
Web App Attack
๐ฉ๐ช
paissangroup
2026-09-25 22:29:25
(15 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 22:22:26
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 18:22:21.962874 2026] [security2:error] [pid 12097:tid 12152] [client 34.30.220.243:57756] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mensaxes.net"] [uri "/.git/config"] [unique_id "arb0HddUj4e9A6qSYsmjOgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 22:04:02
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 18:03:55.600068 2026] [security2:error] [pid 30865:tid 30865] [client 34.30.220.243:36520] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "meneerenmevrouw.boens.org"] [uri "/.git/config"] [unique_id "arbvy03pje7o-A7HwxbkDgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
c y
2026-09-25 21:48:31
(16 hours ago)
Security Monitor detected: sensitive_path_access
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-25 21:47:43
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 17:47:39.849655 2026] [security2:error] [pid 14175:tid 14175] [client 34.30.220.243:52624] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "memotronic.com"] [uri "/.git/config"] [unique_id "arbr-0OKaWqBHTnYoOiDOAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 21:10:49
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 17:10:42.837204 2026] [security2:error] [pid 20651:tid 20651] [client 34.30.220.243:39222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "members.oxfordgliding.com"] [uri "/.git/config"] [unique_id "arbjUhi0K__J8Sh2Jwo6ggAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 20:49:08
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.30.220.243 (243.220.30.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 16:49:03.467402 2026] [security2:error] [pid 4289:tid 4289] [client 34.30.220.243:37934] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "members.15tobefit.com"] [uri "/.git/config"] [unique_id "arbeP80ClE6iChAQJC3ANwAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack