๐บ๐ธ
mnsf
2026-06-16 00:10:28
(13 hours ago)
Abuse Detected (8)
Brute-Force
Web App Attack
Anonymous
2026-06-15 14:44:53
(22 hours ago)
[Mon Jun 15 16:44:50.181449 2026] [access_compat:error] [pid 485498:tid 129668059498176] [client 34. ...
show more
[Mon Jun 15 16:44:50.181449 2026] [access_compat:error] [pid 485498:tid 129668059498176] [client 34.56.83.223:52772] AH01797: client denied by server configuration: /var/www/html/src
[Mon Jun 15 16:44:50.184495 2026] [access_compat:error] [pid 485635:tid 129667925280448] [client 34.56.83.223:52770] AH01797: client denied by server configuration: /var/www/html/htdocs
[Mon Jun 15 16:44:50.185420 2026] [access_compat:error] [pid 485498:tid 129668271310528] [client 34.56.83.223:52778] AH01797: client denied by server configuration: /var/www/html/static
[Mon Jun 15 16:44:50.195579 2026] [access_compat:error] [pid 485498:tid 129668571203264] [client 34.56.83.223:52798] AH01797: client denied by server configuration: /var/www/html/assets
[Mon Jun 15 16:44:50.204462 2026] [access_compat:error] [pid 485498:tid 129668239853248] [client 34.56.83.223:52784] AH01797: client denied by server configuration: /var/www/html/public
[Mon Jun 15 16:44:50.206574 2026] [access_compat:error] [pid 485498:tid 1
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-15 13:16:06
(23 hours ago)
Try to access /.git/config
Web App Attack
๐ฎ๐ฉ
fazar
2026-06-15 13:14:44
(23 hours ago)
crowdsecurity/http-sensitive-files on node: bdj03
Web App Attack
Hacking
Anonymous
2026-06-15 10:49:05
(1 day ago)
Scenarios: http-sensitive-files
Total requests: 30
[15/Jun/2026:10:49:04 +0000] [Client: 34.56.83.22 ...
show more
Scenarios: http-sensitive-files
Total requests: 30
[15/Jun/2026:10:49:04 +0000] [Client: 34.56.83.223] GET [302] "/api/.git/config" User-Agent: "Mozilla/5.0 (Linux; U; Android 1.5; en-us; htc_bahamas Build/CRB17) AppleWebKit/528.5 (KHTML, like Gecko) Version/3.1.2 Mobile Safari/525.20.1"
[15/Jun/2026:10:49:04 +0000] [Client: 34.56.83.223] GET [302] "/v3/.git/config" User-Agent: "SonyEricssonK550i/R1JD Browser/NetFront/3.3 Profile/MIDP-2.0 Configuration/CLDC-1.1"
[15/Jun/2026:10:49:04 +0000] [Client: 34.56.83.223] GET [302] "/public/.git/config" User-Agent: "Mozilla/5.0 (compatible; Konqueror/3.5; Linux; en_US) KHTML/3.5.6 (like Gecko) (Kubuntu)"
[15/Jun/2026:10:49:04 +0000] [Client: 34.56.83.223] GET [302] "/www/.git/config" User-Agent: "Mozilla/5.0 (Windows NT 5.1) AppleWebKit/537.36 (KHTML, like Gecko) MxBrowser/4.5.10.7000 Chrome/30.0.1551.0 Safari/537.36"
[15/Jun/2026:10:49:04 +0000] [Client: 34.56.83.223] GET [302] "/frontend/.git/config" User-Agent: "Jigsaw/2.2.5 W3C_CSS_Validator_JFouffa/2.0"
show less
Web App Attack
Anonymous
2026-06-15 09:20:44
(1 day ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 09:20:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.56.83.223 (223.83.56.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.56.83.223 (223.83.56.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 05:20:38.236046 2026] [security2:error] [pid 7152:tid 7152] [client 34.56.83.223:42606] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.huddleston.construction.savingshvac.com"] [uri "/.env~"] [unique_id "ai_D5hBWeU-0WEpXWyu7fwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
paissangroup
2026-06-15 09:02:30
(1 day ago)
Multiple WAF Violations
Web App Attack
๐จ๐ญ
zynex
2026-06-15 07:48:29
(1 day ago)
URL Probing: /api/v2/.env
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 07:19:21
(1 day ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 07:19:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.56.83.223 (223.83.56.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.56.83.223 (223.83.56.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 03:19:13.710107 2026] [security2:error] [pid 24585:tid 24588] [client 34.56.83.223:42716] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.craftcentre.iancaird.com"] [uri "/.env.pre-production"] [unique_id "ai-ncbvM0ovu71drVO9i8AAAAQA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-06-15 04:56:36
(1 day ago)
Aggressive web search of vulnerable pages: /api/v2/.env /backend/.env /backend/api/.env /frontend/.e ...
show more
Aggressive web search of vulnerable pages: /api/v2/.env /backend/.env /backend/api/.env /frontend/.env.local /api/v3/.env ...
show less
Web App Attack
๐ณ๐ฑ
Cloud86 B.V.
2026-06-15 03:26:04
(1 day ago)
categories: DDoS Attack
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 03:17:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.56.83.223 (223.83.56.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.56.83.223 (223.83.56.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:17:17.244337 2026] [security2:error] [pid 7179:tid 7179] [client 34.56.83.223:47136] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pasadenahairextensions.com"] [uri "/.env"] [unique_id "ai9uvaZreC8LeD0Ziu277AAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:59:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.56.83.223 (223.83.56.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.56.83.223 (223.83.56.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:59:19.685865 2026] [security2:error] [pid 11692:tid 11697] [client 34.56.83.223:46872] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.unificationalliance.org.nothingwithoutwater.com"] [uri "/private/.env"] [unique_id "ai9qhxnntfI0eOF6-sTCiAAAAUM"]
show less
Brute-Force
Bad Web Bot
Web App Attack