Anonymous
2026-09-17 13:45:06
(23 hours ago)
Observed scanned 1 known-sensitive endpoint(s), e.g.: /.git/config
Bad Web Bot
Web App Attack
๐ญ๐บ
miszterx.hu
2026-09-17 09:04:19
(1 day ago)
XORP (haproxy): 2x HTTP 404/403/500 or handshake failure in 24h. Automated report from log_check_ipt ...
show more
XORP (haproxy): 2x HTTP 404/403/500 or handshake failure in 24h. Automated report from log_check_iptables_generator.sh (xorp.hu)
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 18:42:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.7.169.31 (31.169.7.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.169.31 (31.169.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 14:42:10.894534 2026] [security2:error] [pid 30381:tid 30381] [client 34.7.169.31:44578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "compformation.com"] [uri "/.git/config"] [unique_id "aqrjAg-RIDdIWfaGRs0BQAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
craudiovizai
2026-09-16 18:30:33
(1 day ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked a ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
๐ฉ๐ช
big-cloud.nl
2026-09-16 18:21:55
(1 day ago)
Try to access /.git/config
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-16 18:02:05
(1 day ago)
[ti-22al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-22al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.7.169.31 - - [16/Sep/2026:20:01:43 +0200] "GET /.git/config HTTP/1.1" 404 68211 "-" "-"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 18:00:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.7.169.31 (31.169.7.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.169.31 (31.169.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 14:00:41.753495 2026] [security2:error] [pid 29011:tid 29011] [client 34.7.169.31:34244] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "communitycontrol.com"] [uri "/.git/config"] [unique_id "aqrZSS2h2nufejxzwCB_7gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
CBJ
2026-09-16 17:56:03
(1 day ago)
fail2ban: apache-filepath-recon
...
Web App Attack
๐บ๐ธ
zcampbell
2026-09-16 17:51:48
(1 day ago)
Web vulnerability scanning: probing for exposed sensitive files (.git). Detected and blocked automat ...
show more
Web vulnerability scanning: probing for exposed sensitive files (.git). Detected and blocked automatically.
show less
Web App Attack
Bad Web Bot
๐ซ๐ท
spot
2026-09-16 17:49:22
(1 day ago)
34.7.169.31 - - [16/Sep/2026:18:49:21 +0100] "GET /.git/config HTTP/1.1" 404 4662 "-" "-"
...
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-16 17:45:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.7.169.31 (31.169.7.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.169.31 (31.169.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 13:45:14.488667 2026] [security2:error] [pid 5024:tid 5024] [client 34.7.169.31:40408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "committeeonstates.progressivefileshare.org"] [uri "/.git/config"] [unique_id "aqrVqvVEiMVOylet9bWeUgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Anytech
2026-09-16 17:42:05
(1 day ago)
Blocked by ConnMonitor
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 17:17:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.7.169.31 (31.169.7.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.169.31 (31.169.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 13:16:58.911056 2026] [security2:error] [pid 12076:tid 12076] [client 34.7.169.31:41426] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "comicpreservation.com"] [uri "/.git/config"] [unique_id "aqrPClKDrI6s3XO1Wt0tyQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-16 17:01:32
(1 day ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-16 17:01 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 16:55:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.7.169.31 (31.169.7.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.169.31 (31.169.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 12:55:45.099655 2026] [security2:error] [pid 23242:tid 23242] [client 34.7.169.31:54938] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "comercialhosting.com"] [uri "/.git/config"] [unique_id "aqrKEczUZ4CAS0anKGGrUwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack