๐ฎ๐น
mgarofano80
2026-08-31 17:58:27
(13 hours ago)
Brute-Force
Web App Attack
๐ต๐ฑ
sefinek.net
2026-08-29 17:23:57
(2 days ago)
Triggered Cloudflare WAF (firewallCustom) from BE.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from BE.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /www/.git/config | UA: crusader-worker/1.0 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
Petros Stefanakis
2026-08-29 15:30:15
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.53.172.165 (BE/Belgium/165.172.53.34 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.53.172.165 (BE/Belgium/165.172.53.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-08-29 13:53:22
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.53.172.165 (165.172.53.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.53.172.165 (165.172.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 09:53:18.534108 2026] [security2:error] [pid 8582:tid 8595] [client 34.53.172.165:41714] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dpscsde.com"] [uri "/app/.git/config"] [unique_id "apLkTr0Kc6tw5TVxwaKBqwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-29 12:55:20
(2 days ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /www/.git/config (+11 more) | 2026-08-29 12:55 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 11:52:04
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.53.172.165 (165.172.53.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.53.172.165 (165.172.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 07:51:56.017870 2026] [security2:error] [pid 28516:tid 28516] [client 34.53.172.165:42646] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pattifox.com"] [uri "/public/.git/config"] [unique_id "apLH3EmdN0_rMQjy1TxZAwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 09:07:28
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.53.172.165 (165.172.53.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.53.172.165 (165.172.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 05:07:22.458403 2026] [security2:error] [pid 85660:tid 85737] [client 34.53.172.165:41556] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.webmail.oplconnect.com"] [uri "/.git/config"] [unique_id "apKhSi9rkZ20-YpRI9VCCQAAAIA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-29 09:03:30
(2 days ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /www/.git/config (+11 more) | 2026-08-29 09:03 UTC
show less
Hacking
Web App Attack
๐ซ๐ท
masterguru
2026-08-29 08:30:46
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
๐ฉ๐ช
patrisei
2026-08-29 06:41:59
(3 days ago)
You are now banned for 10 years by Schiffdorf-West Patrol. Trigger: crowdsecurity/http-sensitive-fil ...
show more
You are now banned for 10 years by Schiffdorf-West Patrol. Trigger: crowdsecurity/http-sensitive-files
show less
Port Scan
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-29 00:38:41
(3 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
cwytech
2026-08-28 23:39:11
(3 days ago)
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: crowdsecurity/http-sensitive-files.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 20:53:05
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.53.172.165 (165.172.53.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.53.172.165 (165.172.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 16:52:58.189661 2026] [security2:error] [pid 13613:tid 13613] [client 34.53.172.165:44788] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "msbasile.com"] [uri "/html/.git/config"] [unique_id "apH1Kqi9n0xXrpkvO4BDlAAAADY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 20:29:28
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.53.172.165 (165.172.53.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.53.172.165 (165.172.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 16:29:24.295402 2026] [security2:error] [pid 5896:tid 5896] [client 34.53.172.165:38246] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cook-islands-boat-registration.com.boatregistrationdelaware.com"] [uri "/var/www/.git/config"] [unique_id "apHvpJvAR8GHvJKg9w-PPwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 19:33:01
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.53.172.165 (165.172.53.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.53.172.165 (165.172.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 15:32:58.341799 2026] [security2:error] [pid 18021:tid 18021] [client 34.53.172.165:42284] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.knuf1.fritsknuf.com"] [uri "/html/.git/config"] [unique_id "apHiauGwzpy1zITs_eyXvAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack