Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show moreAuto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
Anonymous
Honeypot trap fired (Cloudflare Worker). IP requested non-existent credential/admin/scanner-bait pat ...
show moreHoneypot trap fired (Cloudflare Worker). IP requested non-existent credential/admin/scanner-bait paths: /.git/config, /admin/.git/config, /api/.git/config, /app/.git/config, /assets/.git/config. None of these endpoints exist on our service - matched bait pattern. First seen UTC: 2026-06-15 07:16:43.
show less
(mod_security) mod_security (id:210492) triggered by 34.39.255.130 (130.255.39.34.bc.googleuserconte ...
show more(mod_security) mod_security (id:210492) triggered by 34.39.255.130 (130.255.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 03:07:12.160073 2026] [security2:error] [pid 22092:tid 22092] [client 34.39.255.130:51564] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "analytics.searchenginesubmit.org"] [uri "/app/.git/config"] [unique_id "ai-koKCcQ9A7_oq6sG1UCgAAAGQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Bot / scanning and/or hacking attempts: GET /blog/.git/config HTTP/1.1, GET /v2/.git/config HTTP/1.1 ...
show moreBot / scanning and/or hacking attempts: GET /blog/.git/config HTTP/1.1, GET /v2/.git/config HTTP/1.1, GET /www/.git/config HTTP/1.1, GET /app/.git/config HTTP/1.1, GET /portal/.git/config HTTP/1.1, GET /htdocs/.git/config HTTP/1.1, GET /backend/.git/config HTTP/1.1, GET /.git/config HTTP/1.1, GET /admin/.git/config HTTP/1.1, GET /site/.git/config HTTP/1.1, GET /laravel/.git/config HTTP/1.1, GET /code/.git/config HTTP/1.1, GET /dashboard/.git/config HTTP/1.1, GET /wordpress/.git/config HTTP/1.1, GET /dist/.git/config HTTP/1.1, GET /frontend/.git/config HTTP/1.1, GET /wp-content/.git/config HTTP/1.1, GET /web/.git/config HTTP/1.1, GET /build/.git/config HTTP/1.1, GET /static/.git/config HTTP/1.1, GET /symfony/.git/config HTTP/1.1, GET /v3/.git/config HTTP/1.1, GET /assets/.git/config HTTP/1.1, GET /shop/.git/config HTTP/1.1, GET /api/.git/config HTTP/1.1, GET /project/.git/config HTTP/1.1, GET /html/.git/config HTTP/1.1, GET /src/.git/config HTTP/1.1, GET /public/.git/config HTTP/1.1
show less
CrowdSec: Ip 34.39.255.130 performed 'crowdsecurity/http-sensitive-files' (5 events over 103.986603m ...
show moreCrowdSec: Ip 34.39.255.130 performed 'crowdsecurity/http-sensitive-files' (5 events over 103.986603ms) at 2026-06-15 01:56:52.539032018 +0000 UTC (scenario: crowdsecurity/http-sensitive-files)
show less