๐ฌ๐ง
openstrike.co.uk
2026-10-03 05:14:02
(2 hours ago)
15 attacks on password/key grabbing URLs:
GET /id_dsa HTTP/1.1
Hacking
๐ซ๐ท
Skjall
2026-10-02 13:20:34
(18 hours ago)
Automated vulnerability scan: 10 404 requests in 60s
Web App Attack
๐ฉ๐ช
SCHAPPY
2026-10-02 12:14:40
(19 hours ago)
Malicious activity from IP detected: crowdsecurity/http-probing.
Web App Attack
Hacking
๐ซ๐ท
aki
2026-10-02 11:10:41
(20 hours ago)
Web attack blocked
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 11:05:11
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.52.145.240 (240.145.52.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.52.145.240 (240.145.52.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 07:05:01.430732 2026] [security2:error] [pid 30340:tid 30340] [client 34.52.145.240:56614] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.borzoi-pedigree.info"] [uri "/.htpasswd"] [unique_id "ar-P3RrsMclqGnlKseZ2kwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-02 10:55:26
(20 hours ago)
Fail2Ban apache-noscript
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-02 10:44:18
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.52.145.240 (240.145.52.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.52.145.240 (240.145.52.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 06:44:12.311981 2026] [security2:error] [pid 609983:tid 609983] [client 34.52.145.240:45778] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "finner.info"] [uri "/.htpasswd"] [unique_id "ar-K_InzK4Mw_ssEio-HPQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 10:15:18
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.52.145.240 (240.145.52.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.52.145.240 (240.145.52.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 06:15:11.694621 2026] [security2:error] [pid 7873:tid 7933] [client 34.52.145.240:54772] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chilltech.info"] [uri "/static../.env"] [unique_id "ar-EL7p9A1xuSZEjxaXlGAAAAYA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-10-02 08:41:36
(22 hours ago)
111 requests with url.path */proc/*
Brute-Force
Bad Web Bot
๐น๐ผ
tyebstx
2026-10-02 08:15:08
(23 hours ago)
Wazuh Alert Evidence: 34.52.145.240 - - [02/Oct/2026:07:53:22 +0000] "GET / HTTP/2.0" 444 0 "-" "Moz ...
show more
Wazuh Alert Evidence: 34.52.145.240 - - [02/Oct/2026:07:53:22 +0000] "GET / HTTP/2.0" 444 0 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-"
show less
Web App Attack
๐ฉ๐ช
Gwyneth Llewelyn
2026-10-02 07:58:13
(23 hours ago)
2026/10/02 08:58:11 [error] 2513#2513: *186025 access forbidden by rule, client: 34.52.145.240, serv ...
show more
2026/10/02 08:58:11 [error] 2513#2513: *186025 access forbidden by rule, client: 34.52.145.240, server: api.betatechnologies.info, request: "GET /storage/.env HTTP/2.0", host: "api.betatechnologies.info"
2026/10/02 08:58:11 [error] 2513#2513: *186029 access forbidden by rule, client: 34.52.145.240, server: api.betatechnologies.info, request: "GET //.env HTTP/2.0", host: "api.betatechnologies.info"
2026/10/02 08:58:11 [error] 2513#2513: *186025 access forbidden by rule, client: 34.52.145.240, server: api.betatechnologies.info, request: "GET /static../.env HTTP/2.0", host: "api.betatechnologies.info"
show less
Brute-Force
Web App Attack
๐ฉ๐ช
XICTRON
2026-10-02 07:50:10
(23 hours ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
๐ฉ๐ช
LRob
2026-10-02 07:48:21
(23 hours ago)
Crawler ignoring refusals | ua: Mozilla/5.0 (compatible; Baiduspider/2.0; +http://www.baidu.com/sear ...
show more
Crawler ignoring refusals | ua: Mozilla/5.0 (compatible; Baiduspider/2.0; +http://www.baidu.com/search/spider.html), Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36, Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36 (+9 more) | path: /xhn7rxsf6zsbxvkftjkm, /dist/.vite/manifest.json, /dist/manifest.json (+17 more)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-02 07:05:59
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.52.145.240 (240.145.52.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.52.145.240 (240.145.52.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 03:05:55.541922 2026] [security2:error] [pid 10596:tid 10596] [client 34.52.145.240:58072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "firstlegend.info"] [uri "/media../.env"] [unique_id "ar9X0-8LO5Q_vxUGk_KnOgAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Lunix
2026-10-02 06:56:35
(1 day ago)
Brute-Force
Web App Attack