Anonymous
2026-09-11 13:45:10
(5 hours ago)
Observed scanned 17 known-sensitive endpoint(s), e.g.: /admin/.env, /beta/.env, /beta/phpinfo.php, / ...
show more
Observed scanned 17 known-sensitive endpoint(s), e.g.: /admin/.env, /beta/.env, /beta/phpinfo.php, /buildkite/.env, /cms/.env, /codeigniter/.env
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-11 09:17:54
(10 hours ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-11 09:17:50
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.61.12.192 (192.12.61.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.61.12.192 (192.12.61.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 05:17:43.086466 2026] [security2:error] [pid 12208:tid 12208] [client 34.61.12.192:38060] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sbxyz.net"] [uri "/.git/config"] [unique_id "aqPHNyy-49MqNqx2JqPSswAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-11 05:10:04
(14 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-11 04:21:45
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.61.12.192 (192.12.61.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.61.12.192 (192.12.61.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 00:21:39.045726 2026] [security2:error] [pid 23162:tid 23162] [client 34.61.12.192:40194] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sbip.loneoakhoney.com"] [uri "/.git/config"] [unique_id "aqOB00L7JtgVW_OD5-G1FAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
paissangroup
2026-09-11 04:14:33
(15 hours ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
grassau.com
2026-09-11 03:40:01
(15 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.61.12.192 (US/United States/Iowa/Cou ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.61.12.192 (US/United States/Iowa/Council Bluffs/192.12.61.34.bc.googleusercontent.com)
show less
SQL Injection
๐ท๐ด
clauss
2026-09-11 03:35:22
(15 hours ago)
34.61.12.192 - - [11/Sep/2026:06:35:21 +0300] "GET /.git/config HTTP/1.1" 403 285 "-" "Mozilla/5.0 ( ...
show more
34.61.12.192 - - [11/Sep/2026:06:35:21 +0300] "GET /.git/config HTTP/1.1" 403 285 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.61.12.192 - - [11/Sep/2026:06:35:22 +0300] "GET /.env.local HTTP/1.1" 403 285 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
Anonymous
2026-09-10 22:22:35
(20 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-10 22:13:04
(21 hours ago)
Excessive 404/403 errors
Brute-Force
Anonymous
2026-09-10 22:10:03
(21 hours ago)
suspicious request in access.log
Web App Attack
๐ฎ๐น
VHosting
2026-09-10 21:50:03
(21 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ง๐ท
dominioz
2026-09-10 21:38:04
(21 hours ago)
2026-09-10 21:34:02 GET /.env.local - - 34.61.12.192 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x ...
show more
2026-09-10 21:34:02 GET /.env.local - - 34.61.12.192 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 611
2026-09-10 21:34:03 GET /.env.production - - 34.61.12.192 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 621
2026-09-10 21:34:03 GET /.env.staging - - 34.61.12.192 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 615
2026-09-10 21:34:05 GET /.env.development - - 34.61.12.192 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 623
2026-09-10 21:34:05 GET /.env.test - - 34.61.12.192 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 609
2026-09-10 21:34:06 GET /.env.remote - - 34.61.12.192 HTTP/1.1 Mozil
...
show less
Web App Attack