๐ฌ๐ง
openstrike.co.uk
2026-09-01 05:13:47
(10 hours ago)
4 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
Anonymous
2026-09-01 00:30:07
(15 hours ago)
"GET /.git/config HTTP/1.1"
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 23:17:03
(16 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.53.43.31 (31.43.53.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:949110) triggered by 34.53.43.31 (31.43.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 19:16:56.956148 2026] [security2:error] [pid 17207:tid 17207] [client 34.53.43.31:49512] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "manavamooreabookings.com"] [uri "/.git/config"] [unique_id "apYLaGRS5H3sM7eyLrDuYAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Blexyel
2026-08-31 22:59:32
(17 hours ago)
34.53.43.31 - - [01/Sep/2026:00:59:31 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "-"
...
Brute-Force
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-08-31 22:57:31
(17 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.git (Match: /.git)
show less
Hacking
Brute-Force
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-08-31 22:40:38
(17 hours ago)
[Tue Sep 01 08:40:37.811435 2026] [security2:error] [pid 170621] [client 34.53.43.31:35818] [client ...
show more
[Tue Sep 01 08:40:37.811435 2026] [security2:error] [pid 170621] [client 34.53.43.31:35818] [client 34.53.43.31] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "levellapromotions.com.au"] [uri "/.git/config"] [unique_id "apYC5WAjVbDCKSpnVIR7tAAAAAs"]
...
show less
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-08-31 21:31:40
(18 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 2 domain(s) in 0s
Web App Attack
๐ซ๐ฎ
6kilowatti
2026-08-31 21:28:54
(18 hours ago)
34.53.43.31 - - [01/Sep/2026:00:28:53 +0300] "GET /.git/config HTTP/1.1" 404 13457 "-" "-"
...
Web App Attack
๐ญ๐บ
Adorjan Daczo
2026-08-31 21:25:19
(18 hours ago)
Probe for vulnerabilities. Path attempted: /.git/config
Web App Attack
๐บ๐ธ
interbiznw.com
2026-08-31 20:44:31
(19 hours ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 20:44:05
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.53.43.31 (31.43.53.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.53.43.31 (31.43.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 16:44:01.261022 2026] [security2:error] [pid 8129:tid 8129] [client 34.53.43.31:34570] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adrienberthaud.com"] [uri "/.git/config"] [unique_id "apXnkTYVCAgbRuvWcAJ0owAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 20:23:37
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.53.43.31 (31.43.53.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.53.43.31 (31.43.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 16:23:31.972125 2026] [security2:error] [pid 11725:tid 11739] [client 34.53.43.31:52474] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gotlib.net"] [uri "/.git/config"] [unique_id "apXiwwSkRn7-f-KLKg72UgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-08-31 20:08:01
(20 hours ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice01,ice02,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 19:57:59
(20 hours ago)
Web probing (1 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CR ...
show more
Web probing (1 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CRMON.
show less
Web App Attack
Anonymous
2026-08-31 19:30:28
(20 hours ago)
34.53.43.31 - - [31/Aug/2026:21:30:27 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "-"
Web App Attack