Anonymous
2026-06-16 02:07:39
(1 day ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
π³π±
debestelapp
2026-06-15 04:55:09
(2 days ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-15 04:45:20
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 34.42.255.4 (4.255.42.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.42.255.4 (4.255.42.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 00:45:14.523743 2026] [security2:error] [pid 22722:tid 22722] [client 34.42.255.4:46748] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||brucerohr.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "brucerohr.com"] [uri "/backup.sql"] [unique_id "ai-DWmu4eC0xlDwddIbW-gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
e.fierstra
2026-06-15 03:17:43
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
π¦πΊ
screwlooseit.com.au
2026-06-15 01:26:59
(2 days ago)
Blocked by CSF 13 firewall - Rule: US/United States/4.255.42.34.bc.googleusercontent.com
Web App Attack
Anonymous
2026-06-15 01:08:57
(2 days ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-15 00:28:00
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.42.255.4 (4.255.42.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.42.255.4 (4.255.42.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:27:55.157742 2026] [security2:error] [pid 13368:tid 13368] [client 34.42.255.4:41414] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/config/config.yml" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kaplankrew.royal-barbershop.com"] [uri "/config/config.yml"] [unique_id "ai9HC31sM7if7bB28C6wsAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-14 03:57:46
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 34.42.255.4 (4.255.42.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.42.255.4 (4.255.42.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 23:57:43.174272 2026] [security2:error] [pid 2903:tid 2903] [client 34.42.255.4:35792] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||g-peopleland.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "g-peopleland.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "ai4mt2ZHybpNYuG5HEZ_0gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
Matthew Ping
2026-06-14 02:15:03
(3 days ago)
ModSecurity rule 949110 triggered on wp2. Web application attack blocked by CSF/LFD.
Web App Attack
Hacking
Anonymous
2026-06-14 01:49:08
(3 days ago)
Multiple web server 400 error codes from same source ip
Web App Attack
Anonymous
2026-06-13 23:08:02
(4 days ago)
Malicious activity detected
Hacking
Web App Attack
πͺπΈ
pipeline.es
2026-06-13 20:29:41
(4 days ago)
Web scanning / probing for vulnerable paths | URL: /api/sendgrid.env | Evidence: onlinetours.it 34.4 ...
show more
Web scanning / probing for vulnerable paths | URL: /api/sendgrid.env | Evidence: onlinetours.it 34.42.255.4 - - [13/Jun/2026:22:28:42 +0200] \"GET /api/sendgrid.env HTTP/1.1\" 404 36978 \"-\" \"Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3497.102 Safari/537.36 Vivaldi/2.0.1309.3\" GEOIP_COUNTRY_CODE=US | ASN: GOOGLE-CLOUD-PLATFORM | Country: US
show less
Port Scan
Web App Attack