๐ซ๐ฎ
tjs
2026-09-15 21:05:00
(7 hours ago)
web attack
Hacking
Web App Attack
Anonymous
2026-09-15 17:00:46
(11 hours ago)
Aggressive web scan
Web App Attack
๐ฟ๐ฆ
vanderhost
2026-09-15 13:24:16
(15 hours ago)
[Laravel HoneypotPlus] Automated report - Honeypot access detected on path: /storage/logs/laravel.lo ...
show more
[Laravel HoneypotPlus] Automated report - Honeypot access detected on path: /storage/logs/laravel.log via rule: /storage/logs
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
Starburst SysOp Team
2026-09-15 13:18:11
(15 hours ago)
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encod ...
show more
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encoding/ /proxy/ /lock-token/ /content-range/ /if/ /x-http-method-override/ /x-http-method/ /x-method-override/ /x-middleware-subrequest/ /expect/" at TX:header_name_920450_x-middleware-subrequest. (920450-mnz6-1)
show less
Bad Web Bot
๐บ๐ธ
jormaster3k
2026-09-15 13:13:50
(15 hours ago)
Attack against Apache (too many 404s)
Web App Attack
๐ฌ๐ง
Apache
2026-09-15 13:11:19
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.61.106.45 (US/United States/45.106.61.34.bc. ...
show more
(mod_security) mod_security (id:210492) triggered by 34.61.106.45 (US/United States/45.106.61.34.bc.googleusercontent.com): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 13:03:26
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.61.106.45 (45.106.61.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.61.106.45 (45.106.61.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 09:03:19.975424 2026] [security2:error] [pid 6228:tid 6228] [client 34.61.106.45:37362] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michaelgatley.com"] [uri "/%2E%2E/%2E%2E/%2E%2E/%2E%2E/.env"] [unique_id "aqlCF8hci3nXAnU0AIancAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 12:39:31
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.61.106.45 (45.106.61.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.61.106.45 (45.106.61.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:39:27.561272 2026] [security2:error] [pid 23118:tid 23118] [client 34.61.106.45:48352] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kclawoffice.com"] [uri "/.env.js"] [unique_id "aqk8f3ALUPvkrd0R2FcP3wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐พ
lns.bz
2026-09-15 12:23:51
(16 hours ago)
Too many 404 requests [BY]
Web App Attack
๐บ๐ธ
mnsf
2026-09-15 12:05:19
(16 hours ago)
Request Overload (105)
Brute-Force
Web App Attack
๐บ๐ธ
kbeezie
2026-09-15 11:56:33
(17 hours ago)
34.61.106.45 - - [15/Sep/2026:07:56:32 -0400] "GET /manifest.json HTTP/1.1" 429 564 "-" "Mozilla/5.0 ...
show more
34.61.106.45 - - [15/Sep/2026:07:56:32 -0400] "GET /manifest.json HTTP/1.1" 429 564 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Mobile Safari/537.36"
34.61.106.45 - - [15/Sep/2026:07:56:32 -0400] "GET /@fs/proc/self/cmdline?raw?? HTTP/1.1" 429 162 "-" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)"
34.61.106.45 - - [15/Sep/2026:07:56:32 -0400] "POST /graphql HTTP/1.1" 429 564 "https://kbeezie.com" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Mobile Safari/537.36"
34.61.106.45 - - [15/Sep/2026:07:56:32 -0400] "GET /api/w/starter/jobs_u/get_log_file/../../../../proc/self/environ HTTP/1.1" 429 162 "-" "Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)"
34.61.106.45 - - [15/Sep/2026:07:56:32 -0400] "GET /api/w/default/jobs_u/get_log_file/../../../../proc/self/environ HTTP/1.1" 429 162 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)"
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 11:25:02
(17 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 10:55:15
(18 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.61.106.45 (45.106.61.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.61.106.45 (45.106.61.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 06:55:07.396863 2026] [security2:error] [pid 24345:tid 24345] [client 34.61.106.45:32982] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kawkacevents.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kawkacevents.com"] [uri "/z9x8c7v6b5-debug-trigger-kawkacevents.com"] [unique_id "aqkkC4cUZ-yRJwKACUiLeQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-09-15 10:47:33
(18 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฎ๐น
VHosting
2026-09-15 10:35:03
(18 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack