🇬🇧
openstrike.co.uk
2026-09-03 05:13:20
(2 days ago)
12 attacks on VC URLs:
GET /app/.git/config HTTP/1.1
Hacking
🇩🇪
MBombeck
2026-09-02 23:27:26
(3 days ago)
Fail2Ban/traefik-botsearch on apps-01: banned after 5 failures
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-02 22:01:52
(3 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-01.
show less
Web App Attack
SSH
Hacking
🇫🇷
Catalin Negru
2026-09-02 06:17:05
(3 days ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
🇳🇱
WeCloudit-Anti-Abuse
2026-09-02 05:31:40
(3 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-02 05:23:15
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.64.92.171 (171.92.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.92.171 (171.92.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:23:10.349971 2026] [security2:error] [pid 15485:tid 15485] [client 34.64.92.171:52324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.glenmarstudio.com"] [uri "/var/www/.git/config"] [unique_id "apeyvhe4_2uyvEmDcIN3zwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 04:49:40
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.64.92.171 (171.92.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.92.171 (171.92.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:49:36.548620 2026] [security2:error] [pid 3088:tid 3088] [client 34.64.92.171:44552] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.wilsontribe.org"] [uri "/www/.git/config"] [unique_id "apeq4HitVlDfaqqP5xvBGQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 03:34:07
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.64.92.171 (171.92.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.92.171 (171.92.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 23:34:02.039085 2026] [security2:error] [pid 5398:tid 5398] [client 34.64.92.171:50142] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "donutlocations.com"] [uri "/site/.git/config"] [unique_id "apeZKn1YEanCU_kShPIPrgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇵🇱
wielorzeczownik
2026-09-02 01:01:10
(4 days ago)
5 failed attempts
2026-09-02 03:01:09 GET /wordpress/.git/config -> 404
2026-09-02 03:01:09 GET ...
show more
5 failed attempts
2026-09-02 03:01:09 GET /wordpress/.git/config -> 404
2026-09-02 03:01:09 GET /app/.git/config -> 404
2026-09-02 03:01:09 GET /backend/.git/config -> 404
2026-09-02 03:01:09 GET /html/.git/config -> 404
2026-09-02 03:01:09 GET /site/.git/config -> 404
show less
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-02 00:33:45
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.64.92.171 (171.92.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.92.171 (171.92.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 20:33:37.960860 2026] [security2:error] [pid 11544:tid 11544] [client 34.64.92.171:34510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gdg1.bizecomm.com"] [uri "/api/.git/config"] [unique_id "apdu4b9ULp0sOgU91X8LhQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 20:53:35
(4 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-01 20:26:39
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.64.92.171 (171.92.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.92.171 (171.92.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 16:26:31.704531 2026] [security2:error] [pid 21609:tid 21609] [client 34.64.92.171:37318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dayspapass.com"] [uri "/www/.git/config"] [unique_id "apc0988tqAOoc8RK9RBrrAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Tsumugi Kotobuki
2026-09-01 19:27:22
(4 days ago)
12x Web Scan (L7) | Paths: /www/.git/config, /wordpress/.git/config, /var/www/.git/config, /src/.git ...
show more
12x Web Scan (L7) | Paths: /www/.git/config, /wordpress/.git/config, /var/www/.git/config, /src/.git/config, /site/.git/config | Codes: 444(12x) | rDNS: 171.92.64.34.bc.googleusercontent.com | F2B/angie-path-trap@2026-09-01T19:27:21Z
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-01 18:49:36
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.64.92.171 (171.92.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.92.171 (171.92.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 14:49:31.041563 2026] [security2:error] [pid 31613:tid 31613] [client 34.64.92.171:56568] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mylesmitchell.com"] [uri "/src/.git/config"] [unique_id "apceO9-pAatd53j0uEFByQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-01 18:29:55
(4 days ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack