π³π±
BlueWire Hosting
2026-09-02 16:09:46
(7 minutes ago)
High-confidence malicious configuration/VCS probe
Web App Attack
π©πͺ
FD-IX
2026-09-02 14:19:58
(1 hour ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
πΏπ¦
conure.sh
2026-09-02 12:09:21
(4 hours ago)
csagent: score 20.5: 404 noise floor x2, secrets grab x2; 1 domain(s) in 0s
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-02 10:15:15
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.40.200.143 (143.200.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.200.143 (143.200.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 06:15:10.468665 2026] [security2:error] [pid 22584:tid 22584] [client 34.40.200.143:38194] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theantidote.agency.gregorii.com"] [uri "/backend/.git/config"] [unique_id "apf3Lksl9ZB6ur5eYHWAZQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨πΏ
akac
2026-09-02 10:01:30
(6 hours ago)
Web vulnerability scanning: HTTP/1.1 GET /www/.git/config
Hacking
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
consul.to
2026-09-02 07:40:20
(8 hours ago)
Web attack/malicious scanning detected
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-02 06:19:37
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.40.200.143 (143.200.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.200.143 (143.200.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:19:32.758685 2026] [security2:error] [pid 21624:tid 21624] [client 34.40.200.143:41640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.mmailbox.com"] [uri "/backend/.git/config"] [unique_id "ape_9BgEcJNnkbWqyEWHjQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
debestelapp
2026-09-02 05:50:10
(10 hours ago)
Web App Attack
πΏπ¦
conure.sh
2026-09-02 05:46:43
(10 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
π³π±
WeCloudit-Anti-Abuse
2026-09-02 04:48:31
(11 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-09-02 02:18:24
(13 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.40.200.143 (143.200.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.40.200.143 (143.200.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 22:18:20.343522 2026] [security2:error] [pid 20807:tid 20807] [client 34.40.200.143:41580] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "vdeweese.com"] [uri "/src/.git/config"] [unique_id "apeHbCALuGB15V_RtV9n6QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 00:35:04
(15 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-09-01 18:23:34
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.40.200.143 (143.200.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.200.143 (143.200.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 14:23:28.867838 2026] [security2:error] [pid 2291:tid 2291] [client 34.40.200.143:33508] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.canarysuites.com"] [uri "/public/.git/config"] [unique_id "apcYIGfJ32TK-qKmpuxRSQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-09-01 16:12:48
(1 day ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-01 15:46:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.40.200.143 (143.200.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.200.143 (143.200.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 11:45:59.409625 2026] [security2:error] [pid 19253:tid 19253] [client 34.40.200.143:33768] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tylercomputing.com"] [uri "/www/.git/config"] [unique_id "apbzN19Ea5NxixMXSyHVwwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack