๐บ๐ธ
Epimetheus
2026-10-04 02:40:29
(1 day ago)
Zombie network / Bot scanner detected:
[GET] /model/info
[GET] /service_account.json
[GET] /firebas ...
show more
Zombie network / Bot scanner detected:
[GET] /model/info
[GET] /service_account.json
[GET] /firebase-service-account.json
[GET] /.next/.env
[GET] /core/settings.py
[GET] /shared/.env
[GET] /_image
[GET] /settings/_payload.json
[GET] /aws-exports.js
[GET] /config.json.js
UA: Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)
show less
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-10-04 02:28:26
(1 day ago)
XSS Attempt
Hacking
Anonymous
2026-10-04 01:37:05
(1 day ago)
Fail2Ban apache-noscript
Bad Web Bot
๐บ๐ธ
Epimetheus
2026-10-03 18:44:29
(1 day ago)
Zombie network / Bot scanner detected:
[GET] /actuator/mappings
[GET] /swagger.json
[GET] /assets.. ...
show more
Zombie network / Bot scanner detected:
[GET] /actuator/mappings
[GET] /swagger.json
[GET] /assets../.env
[GET] /apps/.env
[GET] /portal/.env
[GET] /google-service-account.json
[GET] /@fs/var/run/secrets/kubernetes.io/serviceaccount/ca.crt
[GET] /.env
[POST] /graphql
UA: Mozilla/5.0 (compatible; YiBot/1.0; +https://01.ai/)
show less
Bad Web Bot
Exploited Host
Web App Attack
๐ฎ๐น
VHosting
2026-10-03 16:35:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 15:09:04
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.38.187.84 (84.187.38.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.38.187.84 (84.187.38.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 11:09:00.881773 2026] [security2:error] [pid 20179:tid 20179] [client 34.38.187.84:36986] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||roselowry.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "roselowry.com"] [uri "/z9x8c7v6b5-debug-trigger-roselowry.com"] [unique_id "asEajDH3IGCZG1uoRdzu4gAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 13:02:25
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.38.187.84 (84.187.38.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.38.187.84 (84.187.38.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 09:02:18.380979 2026] [security2:error] [pid 8829:tid 8829] [client 34.38.187.84:53350] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||midwayisland.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "midwayisland.com"] [uri "/z9x8c7v6b5-debug-trigger-midwayisland.com"] [unique_id "asD82mQme90uRq2SGOce9gAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
[email protected]
2026-10-03 12:31:50
(1 day ago)
Brute force 254 attempts
DDoS Attack
SQL Injection
Brute-Force
SSH
๐จ๐ฆ
Anytech
2026-10-03 05:34:32
(1 day ago)
Blocked by Conn-Monitor: env-probing
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-03 05:02:51
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 34.38.187.84 (84.187.38.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.38.187.84 (84.187.38.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 01:02:45.473682 2026] [security2:error] [pid 2380630:tid 2380630] [client 34.38.187.84:42174] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||rosarymaker.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "rosarymaker.com"] [uri "/z9x8c7v6b5-debug-trigger-rosarymaker.com"] [unique_id "asCMdQAD09GOUfF-ZqU_3AAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-10-03 04:09:14
(2 days ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ง๐ช
cmbplf
2026-10-03 03:29:34
(2 days ago)
152 requests with url.path */@fs/*
Brute-Force
Bad Web Bot
๐ฉ๐ช
dbmwebdesign
2026-10-03 02:35:12
(2 days ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐ช๐ธ
arturotrenard
2026-10-03 01:55:25
(2 days ago)
WordPress attack blocked (wp-defender): exploit-probe: https://rotulosag.com/api/console/api_server? ...
show more
WordPress attack blocked (wp-defender): exploit-probe: https://rotulosag.com/api/console/api_server?sense_version=%40%40SENSE
show less
Web App Attack
๐ฌ๐ง
noise.agency
2026-10-02 21:24:53
(2 days ago)
34.38.187.84 (BE/Belgium/84.187.38.34.bc.googleusercontent.com), more than 10 Apache 403 hits
Hacking