π¬π§
openstrike.co.uk
2026-08-23 05:15:18
(1 day ago)
4 attacks on config grabbing URLs, VC URLs:
GET /.DS_Store HTTP/1.1
GET /.git/HEAD HTTP/1.1
Hacking
π§πͺ
Ivo Vynckier
2026-08-22 16:16:00
(1 day ago)
34.31.27.206 - - [22/Aug/2026:09:10:40 +0200] "GET /.svn/wc.db HTTP/2.0" 404 2310 "-" "Mozilla/5.0 ( ...
show more
34.31.27.206 - - [22/Aug/2026:09:10:40 +0200] "GET /.svn/wc.db HTTP/2.0" 404 2310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
34.31.27.206 - - [22/Aug/2026:09:10:41 +0200] "GET /CVS/Entries HTTP/2.0" 301 285 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
34.31.27.206 - - [22/Aug/2026:09:10:42 +0200] "GET /.hg/store/fncache HTTP/2.0" 301 291 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
show less
Web App Attack
π§πͺ
cmbplf
2026-08-22 10:29:12
(1 day ago)
2.250 requests with url.path *.git/*
165 requests with url.path *.svn/*
164 requests with url.pat ...
show more
2.250 requests with url.path *.git/*
165 requests with url.path *.svn/*
164 requests with url.path *.hg/*
152 requests with url.path */.DS_Store
show less
Brute-Force
Bad Web Bot
πΏπ¦
conure.sh
2026-08-22 09:06:13
(1 day ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
π΅π±
Budyn
2026-08-22 08:51:03
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: test.astropot.site | URI: /.git/HEAD | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
π§πͺ
voormedia
2026-08-22 08:39:28
(2 days ago)
Accessed trap at '/.git/HEAD'
Web App Attack
π©πͺ
macrob
2026-08-22 06:49:36
(2 days ago)
2026/08/22 06:49:34 [error] 2888833#2888833: *507054641 access forbidden by rule, client: 34.31.27.2 ...
show more
2026/08/22 06:49:34 [error] 2888833#2888833: *507054641 access forbidden by rule, client: 34.31.27.206, server: binixo.es, request: "GET /.git/HEAD HTTP/2.0", host: "binixo.es"
2026/08/22 06:49:35 [error] 2888836#2888836: *507054654 access forbidden by rule, client: 34.31.27.206, server: binixo.es, request: "GET /.git/HEAD HTTP/2.0", host: "binixo.es"
2026/08/22 06:49:35 [error] 2888835#2888835: *507054681 access forbidden by rule, client: 34.31.27.206, server: binixo.es, request: "GET /.svn/wc.db HTTP/2.0", host: "binixo.es"
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 06:34:32
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.31.27.206 (206.27.31.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.31.27.206 (206.27.31.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 02:34:28.594601 2026] [security2:error] [pid 15915:tid 15915] [client 34.31.27.206:47996] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.blockadegc.com"] [uri "/.git/HEAD"] [unique_id "aolC9BsvXUzJvxIQqAjLcQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³πΏ
Antinson
2026-08-22 04:50:22
(2 days ago)
Scraping with a high error ratio and request rate
Bad Web Bot
π©πͺ
filstal.org
2026-08-22 04:16:07
(2 days ago)
Web exploit or injection attempt blocked by ModSecurity WAF.
SQL Injection
Web App Attack
πΊπΈ
zcampbell
2026-08-22 04:06:40
(2 days ago)
Web vulnerability scanning: probing for exposed sensitive files (.git). Detected and blocked automat ...
show more
Web vulnerability scanning: probing for exposed sensitive files (.git). Detected and blocked automatically.
show less
Web App Attack
Bad Web Bot
π©πͺ
FeG Deutschland
2026-08-22 03:31:13
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
πΊπ¦
URAN Publishing Service
2026-08-22 03:25:01
(2 days ago)
[22/Aug/2026:06:25:01 +0300] -- 34.31.27.206 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/ ...
show more
[22/Aug/2026:06:25:01 +0300] -- 34.31.27.206 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/HEAD HTTP/1.1
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 02:20:36
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.31.27.206 (206.27.31.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.31.27.206 (206.27.31.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 22:20:30.331325 2026] [security2:error] [pid 7488:tid 7488] [client 34.31.27.206:56842] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jeffjastro.com"] [uri "/.git/HEAD"] [unique_id "aokHbgN0FdQVFcuWxkC-RAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack