๐บ๐ธ
WellSpring
2026-09-23 23:50:16
(24 minutes ago)
git exposure on covenantdiplomacy.org/app/.git/config โ WellSpr.ing/NetSentinel civic-AI security la ...
show more
git exposure on covenantdiplomacy.org/app/.git/config โ WellSpr.ing/NetSentinel civic-AI security layer
show less
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-23 20:59:40
(3 hours ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 20:34:46
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.119.184 (184.119.47.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.119.184 (184.119.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 16:34:39.911170 2026] [security2:error] [pid 32291:tid 32291] [client 34.47.119.184:42062] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clambakebeachhouse.com"] [uri "/htdocs/.git/config"] [unique_id "arQ3371b9fCKr_nfppZupQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 17:36:01
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.119.184 (184.119.47.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.119.184 (184.119.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 13:35:56.963018 2026] [security2:error] [pid 10640:tid 10640] [client 34.47.119.184:38144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "casaniagara.com.mx"] [uri "/.git/config"] [unique_id "arQN_C_qqL9XR1ZRU1lqzwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-23 14:49:13
(9 hours ago)
[topuurbd] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34 ...
show more
[topuurbd] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.47.119.184 - - \[23/Sep/2026:16:48:58 +0200\] "GET /var/www/.git/config HTTP/1.1" 307 5630 "-" "crusader-worker/1.0"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ฆ
Olexiy Backend
2026-09-23 14:23:37
(9 hours ago)
34.47.119.184
...
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 12:57:31
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.119.184 (184.119.47.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.119.184 (184.119.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 08:57:26.512104 2026] [security2:error] [pid 26046:tid 26046] [client 34.47.119.184:57538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blackjobsnetwork.com"] [uri "/wordpress/.git/config"] [unique_id "arPMtlbqab4U8ZWJsYlvHgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
decisionconcepts
2026-09-23 12:32:15
(11 hours ago)
34.47.119.184 - - [23/Sep/2026:05:32:14 -0700] "GET /app/.git/config HTTP/1.1" 403 199 "-" "crusader ...
show more
34.47.119.184 - - [23/Sep/2026:05:32:14 -0700] "GET /app/.git/config HTTP/1.1" 403 199 "-" "crusader-worker/1.0"
34.47.119.184 - - [23/Sep/2026:05:32:14 -0700] "GET /.git/config HTTP/1.1" 403 199 "-" "crusader-worker/1.0"
show less
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-09-23 11:24:58
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.119.184 (184.119.47.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.119.184 (184.119.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 07:24:52.850843 2026] [security2:error] [pid 27299:tid 27299] [client 34.47.119.184:39130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bestcountryclubs.com"] [uri "/src/.git/config"] [unique_id "arO3BMMqH6nEPMWj8EMoWQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
roxyapi
2026-09-23 10:51:30
(13 hours ago)
Honeypot: automated vulnerability scan / web app attack. Last probe: GET /html/.git/config
Web App Attack
Bad Web Bot
๐ฉ๐ช
FeG Deutschland
2026-09-23 09:46:14
(14 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
Marco711
2026-09-23 06:42:35
(17 hours ago)
port/URL scanning
Port Scan
Web App Attack
๐ฉ๐ช
stinpriza
2026-09-23 06:01:20
(18 hours ago)
common Web Exploits being scanned
Web App Attack
๐ซ๐ท
dynamix
2026-09-23 05:23:45
(18 hours ago)
Multiple WAF Violations
Web App Attack
๐ฆ๐น
Starburst SysOp Team
2026-09-23 05:18:10
(18 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-vie6-1)
Hacking
Web App Attack