๐ซ๐ท
pm33
2026-08-28 16:34:32
(3 hours ago)
Excessive crawling HTTP 404
Web App Attack
๐ฉ๐ช
LRob
2026-08-28 16:10:18
(3 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /wp-config.php.swp (+12 more) | 2026-08-28 16:10 UTC
show less
Hacking
Web App Attack
๐ป๐ณ
trung.fun
2026-08-28 16:04:37
(3 hours ago)
DDoS, Hack, Brute Force, Web Attack
...
DDoS Attack
Web Spam
Hacking
Brute-Force
Web App Attack
๐ช๐ธ
el-brujo
2026-08-28 15:47:54
(4 hours ago)
28/Aug/2026:17:47:54.373475 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
28/Aug/2026:17:47:54.373475 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 34.73.203.154] ModSecurity: Warning. Matched phrase "/.env" at REQUEST_FILENAME. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.env found within REQUEST_FILENAME: /.env.save"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "papyre.elhacker.info"] [uri "/.env.save"] [unique_id "apGtqltIGRhQLuukt0q3YQAACCA"]
...
show less
Hacking
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-28 15:20:33
(4 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 12:57:40
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.73.203.154 (154.203.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.203.154 (154.203.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 08:57:31.982372 2026] [security2:error] [pid 30828:tid 30828] [client 34.73.203.154:55074] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cyprus-boat-registration.com.boatregistrationdelaware.com"] [uri "/.env"] [unique_id "apGFu3iuFzCx_qXAfv0q5QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
lnklnx
2026-08-28 12:54:02
(6 hours ago)
www.lnklnx.com:80 34.73.203.154 - - [28/Aug/2026:07:54:00 -0500] "GET /.env HTTP/1.1" 301 562 "-" "c ...
show more
www.lnklnx.com:80 34.73.203.154 - - [28/Aug/2026:07:54:00 -0500] "GET /.env HTTP/1.1" 301 562 "-" "crusader-worker/1.0"
...
show less
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-08-28 12:40:04
(7 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 11:26:44
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.73.203.154 (154.203.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.203.154 (154.203.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 07:26:36.336129 2026] [security2:error] [pid 1399:tid 1399] [client 34.73.203.154:46430] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.coiltechnologies.com.controlledautomationinc.com"] [uri "/wp-config.php~"] [unique_id "apFwbIo0KF2OtrQhRZOXqAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 10:22:02
(9 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ฌ๐ง
consul.to
2026-08-28 10:18:13
(9 hours ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-08-27 21:04:45
(22 hours ago)
fail2ban:piguard2:18,19,21
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
COMAITE
2026-08-27 19:57:11
(23 hours ago)
Suspicious URL access.
Web App Attack
๐ฉ๐ช
MBombeck
2026-08-27 19:35:58
(1 day ago)
Fail2Ban: traefik-botsearch on edge-01.ioioio.dev
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 18:56:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.73.203.154 (154.203.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.203.154 (154.203.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 14:56:26.497703 2026] [security2:error] [pid 13479:tid 13479] [client 34.73.203.154:60800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "metaluz.com.sv.mpservice.com.sv"] [uri "/.env.example"] [unique_id "apCIWsEajOwg85UoL8u-ZAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack