๐ณ๐ฟ
Antinson
2026-07-19 16:04:15
(1 day ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐บ๐ธ
JustMeHere
2026-07-19 15:50:55
(1 day ago)
[Sun Jul 19 11:50:53.097126 2026] [security2:error] [pid 69059:tid 69182] [client 34.7.241.155:54008 ...
show more
[Sun Jul 19 11:50:53.097126 2026] [security2:error] [pid 69059:tid 69182] [client 34.7.241.155:54008] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.15.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "www.yorknation.com"] [uri "/.git/config"] [unique_id "alzyXWitdcc23m4Idcg3WAAAAI8"]
...
show less
Web App Attack
๐ณ๐ด
jad-abuse
2026-07-19 15:50:08
(1 day ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 2 hits.
show less
Web App Attack
๐ง๐ท
dominioz
2026-07-19 15:36:50
(1 day ago)
2026-07-19 15:18:48 GET /.git/config - - 34.7.241.155 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64) - 301 ...
show more
2026-07-19 15:18:48 GET /.git/config - - 34.7.241.155 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64) - 301 601
2026-07-19 15:22:12 GET /.git/config - - 34.7.241.155 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64) - 301 0
2026-07-19 15:34:58 GET /.git/config - - 34.7.241.155 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64) - 301 653
2026-07-19 15:35:49 GET /.git/config - - 34.7.241.155 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64) - 301 585
...
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-07-19 15:34:15
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 15:33:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.7.241.155 (155.241.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.241.155 (155.241.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 11:33:06.961685 2026] [security2:error] [pid 2394705:tid 2394705] [client 34.7.241.155:46350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.redtowndesign.nathanburd.com"] [uri "/.git/config"] [unique_id "alzuMvXOV1yMmcpvfN21-gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
IVski
2026-07-19 15:33:13
(1 day ago)
IVski WAF | Sensitive file probe detected - looking for .git
Port Scan
Brute-Force
Web App Attack
๐ฉ๐ช
Lino Project
2026-07-19 15:31:12
(1 day ago)
34.7.241.155 - - [19/Jul/2026:17:31:09 +0200] "GET /.git/config HTTP/1.1" 403 5487 "-" "Mozilla/5.0 ...
show more
34.7.241.155 - - [19/Jul/2026:17:31:09 +0200] "GET /.git/config HTTP/1.1" 403 5487 "-" "Mozilla/5.0 (X11; Linux x86_64)"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-07-19 15:27:20
(1 day ago)
(mod_security-custom) mod_security (id:210492) triggered by 34.7.241.155 (NL/The Netherlands/Groning ...
show more
(mod_security-custom) mod_security (id:210492) triggered by 34.7.241.155 (NL/The Netherlands/Groningen/Groningen/155.241.7.34.bc.googleusercontent.com/[AS396982 GOOGLE-CLOUD-PLATFORM]): 1 in the last 3600 secs (0-srv1)
show less
Hacking
๐ซ๐ฎ
inlink.ltd
2026-07-19 15:25:57
(1 day ago)
dot file probe
Web App Attack
๐ต๐ฑ
srebrakowski.com
2026-07-19 15:22:41
(1 day ago)
crowdsec/waf-detected-exploits
Brute-Force
๐บ๐ธ
Major Hostility
2026-07-19 15:22:20
(1 day ago)
"GET /.git/config HTTP/1.1" 404
"GET /.git/config HTTP/1.1" 404
"GET /.git/config HTTP/1.1" 404
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-07-19 15:19:02
(1 day ago)
Try to access /.git/config
Web App Attack
๐ซ๐ท
dynamix
2026-07-19 15:18:13
(1 day ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 15:17:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.7.241.155 (155.241.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.241.155 (155.241.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 11:17:21.762716 2026] [security2:error] [pid 3419:tid 3419] [client 34.7.241.155:59126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kporterdesign.com"] [uri "/.git/config"] [unique_id "alzqgbqX9e4BgI7R01nDlAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack