๐ต๐ฑ
Budyn
2026-09-17 13:29:44
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: test.dont-eat-the-pudding.top | URI: /xmlrpc.php?rsd= | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐น
Information Security
2026-09-17 12:58:41
(1 day ago)
Web App Attack
...
Web App Attack
๐ต๐ฑ
Budyn
2026-09-17 09:06:41
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: status.dont-eat-the-pudding.xyz | URI: /.env | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ท๐ด
iulianh
2026-09-17 08:36:44
(1 day ago)
80,443
Brute-Force
SSH
Anonymous
2026-09-17 04:23:18
(1 day ago)
Web attack
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-17 02:35:42
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: cpanel.astropot.tech | URI: /backup.sql | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 00:35:49
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.46.246.144 (144.246.46.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.46.246.144 (144.246.46.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 20:35:41.967062 2026] [security2:error] [pid 24353:tid 24353] [client 34.46.246.144:49630] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Clive/Thumbs.db"] [unique_id "aqs13ehUa7c-inl5VRArDQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-16 22:50:23
(1 day ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: / | 2026-09-16 22:50 UTC
show less
Bad Web Bot
๐ต๐ฑ
Budyn
2026-09-16 07:29:11
(2 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Web Spam (Form Abuse). Unsolicite ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Web Spam (Form Abuse). Unsolicited bulk message (Form Spam) captured. Evidence:
HOST: teddypot.pro | URI: /contact.php | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
--- SPAM DATA ---
(From: [email protected] )
[Empty / GET Request]
show less
Web Spam
Web App Attack
๐ต๐ฑ
Budyn
2026-09-16 02:15:38
(2 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: staging.astropot.site | URI: /.git/HEAD | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 08:32:33
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 34.46.246.144 (144.246.46.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.46.246.144 (144.246.46.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 04:32:27.739125 2026] [security2:error] [pid 23343:tid 23343] [client 34.46.246.144:44956] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.abundancecompany.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.abundancecompany.com"] [uri "/wp-json/wp/v2/users/4"] [unique_id "aqkCm3nYwvJorBlaDnCMYgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-14 12:29:10
(4 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 28
Exploited Host
Web App Attack
๐ฉ๐ช
LRob
2026-09-13 18:04:00
(5 days ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: / | 2026-09-13 18:04 UTC
show less
Bad Web Bot
๐ฉ๐ช
EGP Abuse Dept
2026-09-13 09:32:01
(5 days ago)
Scraping webshop URLs (www.specials4schools.com), likely botnet drone
Bad Web Bot
Exploited Host
Anonymous
2026-09-12 04:25:53
(6 days ago)
Web attack
Bad Web Bot
Web App Attack