Anonymous
2026-09-20 11:59:31
(2 hours ago)
Aggressive web scan
Web App Attack
π©πͺ
jbcrn
2026-09-20 11:17:00
(3 hours ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. Requested honeypot path: /.git/config. User-Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36
show less
Bad Web Bot
Web App Attack
π΅π±
Budyn
2026-09-20 08:25:25
(6 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: telemetry.goblinpot.tech | URI: /.git/config | UA: Mozilla/5.0 (iPhone; CPU iPhone OS 18_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1 Mobile/15E148 Safari/604.1 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
π΅π±
Budyn
2026-09-20 04:22:39
(10 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: admin.teddypot.site | URI: /.git/config | UA: Mozilla/5.0 (Windows NT 11.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
π«π·
Baking333
2026-09-20 02:00:34
(12 hours ago)
[redacted] 34.31.120.130 - - [20/Sep/2026:03:00:31 +0100] "GET /.git/config HTTP/2.0" 301 296 "https ...
show more
[redacted] 34.31.120.130 - - [20/Sep/2026:03:00:31 +0100] "GET /.git/config HTTP/2.0" 301 296 "https://[redacted]/.git/config" "Mozilla/5.0 (Windows NT 11.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36" [redacted] 34.31.120.130 - - [20/Sep/2026:03:00:32 +0100] "GET /.git/credentials HTTP/2.0" 301 298 "https://[redacted]/.git/credentials" "Mozilla/5.0 (Windows NT 11.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36"
show less
Bad Web Bot
Web App Attack
π¬π§
spufidoo
2026-09-20 00:55:04
(13 hours ago)
34.31.120.130 - - [20/Sep/2026:01:55:00 +0100] "GET /.git/config HTTP/1.1" 403 180 "-" "Mozilla/5.0 ...
show more
34.31.120.130 - - [20/Sep/2026:01:55:00 +0100] "GET /.git/config HTTP/1.1" 403 180 "-" "Mozilla/5.0 (Linux; Android 16; Pixel 9a) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Mobile Safari/537.36" host=home.davage.me proxy=-
34.31.120.130 - - [20/Sep/2026:01:55:00 +0100] "GET /.git/credentials HTTP/1.1" 403 180 "-" "Mozilla/5.0 (Linux; Android 16; Pixel 9a) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Mobile Safari/537.36" host=home.davage.me proxy=-
34.31.120.130 - - [20/Sep/2026:01:55:00 +0100] "GET /.git-credentials HTTP/1.1" 403 180 "-" "Mozilla/5.0 (Linux; Android 16; Pixel 9a) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Mobile Safari/537.36" host=home.davage.me proxy=-
34.31.120.130 - - [20/Sep/2026:01:55:00 +0100] "GET /.gitconfig HTTP/1.1" 403 180 "-" "Mozilla/5.0 (Linux; Android 16; Pixel 9a) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Mobile Safari/537.36" host=home.davage.me proxy=-
34.31.120.130 - - [20/Sep/2026:01:55:01 +0100]
...
show less
Hacking
Web App Attack
π³π±
Site.eu
2026-09-19 20:17:57
(18 hours ago)
Excessive multi-domain requests
Brute-Force
π΅π±
Budyn
2026-09-19 18:49:11
(19 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: auth.astropot.site | URI: /.git/config | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 15_3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36 Edg/135.0.0.0 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
π³π±
Alt255
2026-09-19 13:50:40
(1 day ago)
[mx02al] Web exploit scanning: 2 suspicious requests detected by fail2ban jail apache-scanner. Examp ...
show more
[mx02al] Web exploit scanning: 2 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.31.120.130 - - [19/Sep/2026:15:50:36 +0200] "GET /.git/credentials HTTP/1.1" 404 1434 "-" "Mozilla/5.0 (Linux; Android 15; CPH2625) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/137.0.0.0 Mobile Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
π³π±
e.fierstra
2026-09-19 11:33:39
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-09-18 22:48:19
(1 day ago)
Excessive 404/403 errors
Brute-Force
π³π±
homeshowdomain.nl
2026-09-18 22:00:55
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-17.
show less
Web App Attack
SSH
Hacking
π΅π±
Budyn
2026-09-18 21:28:25
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: admin.budyn.ovh | URI: /.git/config | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 15_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.5 Safari/605.1.15 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-09-18 18:42:25
(1 day ago)
Excessive multi-domain requests
Brute-Force
πͺπΈ
masterguru
2026-09-18 13:35:58
(2 days ago)
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110- ...
show more
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110-122)
show less
Hacking