๐ฉ๐ช
todix
2026-09-16 08:24:55
(2 days ago)
Web App Attack Exploid from 34.50.12.84
Web App Attack
๐บ๐ธ
OceanTreasure
2026-09-16 00:20:13
(2 days ago)
tcp/80; /.env* dotfile probe: "GET /.env" @ 2026-09-16T00:16:05Z
Web App Attack
๐ฉ๐ช
joharikop
2026-09-16 00:03:11
(2 days ago)
Nginx: credential/secret file probe (/.env, /.git, /.aws etc). Automated ban via fail2ban nginx-cred ...
show more
Nginx: credential/secret file probe (/.env, /.git, /.aws etc). Automated ban via fail2ban nginx-credential-probes jail.
show less
Web App Attack
๐บ๐ธ
[email protected]
2026-09-15 23:55:22
(2 days ago)
CrowdSec ban: crowdsecurity/http-wordpress-scan (duration: 71h59m50s)
Web App Attack
Anonymous
2026-09-15 21:05:14
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.50.12.84 (KR/South Korea/84.12.50.34 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.50.12.84 (KR/South Korea/84.12.50.34.bc.googleusercontent.com)
show less
SQL Injection
Anonymous
2026-09-15 20:14:05
(2 days ago)
Banned by Fail2Ban on server
Web App Attack
Anonymous
2026-09-15 20:00:04
(2 days ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:07:33
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.12.84 (84.12.50.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.12.84 (84.12.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:07:29.274919 2026] [security2:error] [pid 8894:tid 8894] [client 34.50.12.84:44432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grupoporvenir.com"] [uri "/.env"] [unique_id "aqmXcdomEVzPbdazSxaregAAAAk"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 16:50:35
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.12.84 (84.12.50.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.12.84 (84.12.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 12:50:29.636216 2026] [security2:error] [pid 4667:tid 4667] [client 34.50.12.84:57126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ferienwohnung-buchen.com"] [uri "/.env"] [unique_id "aql3VTTGFSG8cmj-oim-GQAAABw"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 12:59:53
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.12.84 (84.12.50.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.12.84 (84.12.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:59:49.554275 2026] [security2:error] [pid 22557:tid 22557] [client 34.50.12.84:57934] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blucielocapital.com"] [uri "/.env"] [unique_id "aqlBRbf9aU2X1ssjKdzexAAAAAY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 12:43:36
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.12.84 (84.12.50.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.12.84 (84.12.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:43:33.429276 2026] [security2:error] [pid 29359:tid 29359] [client 34.50.12.84:47208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blublk.com"] [uri "/.env"] [unique_id "aqk9dUQtYgfLbmxH3b0TnwAAAAI"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 11:56:18
(3 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ซ๐ท
dynamix
2026-09-15 11:32:46
(3 days ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
LRob
2026-09-15 11:04:09
(3 days ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.env | 2026-09-15 11:04 UTC
show less
Hacking
Web App Attack