๐บ๐ธ
TPI-Abuse
2026-09-03 21:17:30
(1 minute ago)
(mod_security) mod_security (id:210492) triggered by 34.6.122.183 (183.122.6.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.122.183 (183.122.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 17:17:26.870761 2026] [security2:error] [pid 14018:tid 14018] [client 34.6.122.183:51064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "writebetweenthelines.com"] [uri "/.git/config"] [unique_id "apnj5ngXTv2DeRCJDtPYqwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-03 21:02:42
(16 minutes ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.git (Match: /.git)
show less
Hacking
Brute-Force
Web App Attack
Anonymous
2026-09-03 21:02:23
(16 minutes ago)
git/env leak probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 20:50:38
(28 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.6.122.183 (183.122.6.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.122.183 (183.122.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 16:50:29.790618 2026] [security2:error] [pid 32339:tid 32339] [client 34.6.122.183:45818] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.accordionstars.com"] [uri "/.git/config"] [unique_id "apndlc2QI5ILzoWx1knGuQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
daveoctober
2026-09-03 20:36:35
(42 minutes ago)
October Sentinel: honeypot triggered
Bad Web Bot
Web App Attack
๐ฉ๐ฐ
ScamAware
2026-09-03 20:28:27
(50 minutes ago)
Detected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensiti ...
show more
Detected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensitive files, source control, config, and backups). Hits from same IP in last 60 minutes: 1. Unique request paths counted internally: 1. Cloudflare action: block. Cloudflare source: firewallCustom.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 20:16:00
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.6.122.183 (183.122.6.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.122.183 (183.122.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 16:15:53.758915 2026] [security2:error] [pid 553:tid 553] [client 34.6.122.183:46438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chrisbilder.com"] [uri "/.git/config"] [unique_id "apnVeVfGTBq4x6gAkyA2ggAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 19:59:38
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.6.122.183 (183.122.6.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.122.183 (183.122.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 15:59:33.481348 2026] [security2:error] [pid 3226:tid 3226] [client 34.6.122.183:41874] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stardancertantra.com"] [uri "/.git/config"] [unique_id "apnRpY0Zp-ck9P2AaPzz1QAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
tttomomi
2026-09-03 19:46:36
(1 hour ago)
Repeated probing for credential and configuration files, and for known webshell and remote-code-exec ...
show more
Repeated probing for credential and configuration files, and for known webshell and remote-code-execution endpoints, on our web server. Every request was refused with a 4xx status; none returned content. Paths probed: /.git/config.
show less
Web App Attack
๐ฉ๐ช
Phenix Info
2026-09-03 19:24:28
(1 hour ago)
SmallGuard.fr/Prestashop Empty User Agent
Web App Attack
๐ฌ๐ง
AvonleaConsulting
2026-09-03 19:20:34
(1 hour ago)
Scanning unused Default website or suspicious access to valid sites from IP marked as abusive
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-09-03 19:20:10
(1 hour ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-09-03 19:15:55
(2 hours ago)
34.6.122.183 - - [03/Sep/2026:21:15:52 +0200] "GET /.git/config HTTP/1.1" 403 4433 "-" "-"
34.6.122. ...
show more
34.6.122.183 - - [03/Sep/2026:21:15:52 +0200] "GET /.git/config HTTP/1.1" 403 4433 "-" "-"
34.6.122.183 - - [03/Sep/2026:17:09:02 +0200] "GET /.git/config HTTP/1.1" 403 4452 "-" "-"
34.6.122.183 - - [03/Sep/2026:17:06:23 +0200] "GET /.git/config HTTP/1.1" 403 4449 "-" "-"
show less
Web App Attack
Hacking
๐ต๐ฑ
sefinek.net
2026-09-03 18:51:50
(2 hours ago)
Triggered Cloudflare WAF (firewallCustom) from NL.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from NL.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /.git/config | UA: Empty string โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
etu brutus
2026-09-03 18:43:03
(2 hours ago)
34.6.122.183 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack