๐ณ๐ฑ
Site.eu
2026-09-23 13:24:42
(18 hours ago)
Excessive 404/403 errors
Brute-Force
๐ธ๐ช
vaia.cloud
2026-09-23 12:15:03
(19 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐จ๐ญ
ALPHANET
2026-09-23 11:59:18
(19 hours ago)
web exploits
Hacking
Exploited Host
Web App Attack
๐ช๐ธ
robotstxt
2026-09-22 13:17:04
(1 day ago)
34.50.124.93 - - [22/Sep/2026:13:16:04 +0000] "GET /.env HTTP/1.1" 403 15959 "-" "Mozilla/5.0 (Macin ...
show more
34.50.124.93 - - [22/Sep/2026:13:16:04 +0000] "GET /.env HTTP/1.1" 403 15959 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.50.124.93"
34.50.124.93 - - [22/Sep/2026:13:16:07 +0000] "GET /.env.local HTTP/1.1" 403 15959 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.50.124.93"
34.50.124.93 - - [22/Sep/2026:13:16:08 +0000] "GET /.env.production HTTP/1.1" 403 15959 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.50.124.93"
34.50.124.93 - - [22/Sep/2026:13:16:09 +0000] "GET /.env.staging HTTP/1.1" 403 15959 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.50.124.93"
34.50.124.93 - - [22/Sep/2026:13:16:10 +0000] "GET /.env.development HTTP/1
...
show less
Web App Attack
๐ฉ๐ช
kkw
2026-09-22 09:40:36
(1 day ago)
[REDACTED] 34.50.124.93 - - [22/Sep/2026:11:40:35 +0200] "GET /.git/config HTTP/1.1" 404 558 "-" "Mo ...
show more
[REDACTED] 34.50.124.93 - - [22/Sep/2026:11:40:35 +0200] "GET /.git/config HTTP/1.1" 404 558 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
... (mode: searching http-sensitive-files)
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 05:42:29
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.124.93 (93.124.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.124.93 (93.124.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 01:42:21.515530 2026] [security2:error] [pid 17407:tid 17407] [client 34.50.124.93:43530] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.saboun.com"] [uri "/.git/config"] [unique_id "arIVPU8svh3RGcNFQMMFMQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-22 03:02:12
(2 days ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-21 21:32:49
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.124.93 (93.124.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.124.93 (93.124.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 17:32:43.808577 2026] [security2:error] [pid 29967:tid 29967] [client 34.50.124.93:56042] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.saadehcomputers.com.saadeh.ws"] [uri "/.git/config"] [unique_id "arGie5FNqW-e-7Whbe6TXQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-21 19:26:03
(2 days ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-21 07:28:32
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.124.93 (93.124.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.124.93 (93.124.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 03:28:28.089135 2026] [security2:error] [pid 985:tid 985] [client 34.50.124.93:35910] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.strangerdanger.andrsn.com"] [uri "/.git/config"] [unique_id "arDcnLTVozUcpD6PXcvy9AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 22:50:52
(3 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-20 17:30:15
(3 days ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 2s
Web App Attack