๐ธ๐ฌ
Cloudkul Cloudkul
2026-09-14 14:54:29
(2 days ago)
Attempted Brute Force on our application
Brute-Force
Web App Attack
๐บ๐ธ
leasj
2026-09-14 14:33:27
(2 days ago)
Observed Scanned 31 known-sensitive endpoint(s), e.g.: /@fs/..%2f..%2f..%2f..%2f..%2froot/.env?raw?? ...
show more
Observed Scanned 31 known-sensitive endpoint(s), e.g.: /@fs/..%2f..%2f..%2f..%2f..%2froot/.env?raw??, /static../.env, /media../.env, /files../.env, /assets../.env.
show less
Hacking
Bad Web Bot
Web App Attack
๐จ๐ท
Klicks
2026-09-14 13:44:00
(2 days ago)
Request URL: https://app.1.com:443/trace.axd
Request path: /trace.axd
User host addr ...
show more
Request URL: https://app.1.com:443/trace.axd
Request path: /trace.axd
User host address: 34.75.177.20
show less
Bad Web Bot
Web App Attack
Web Spam
๐บ๐ธ
H24
2026-09-14 09:03:53
(2 days ago)
/i.php /phpinfo.php /wp-json /.git/config /test.php /.aws/credentials /.git-credentials
Web App Attack
๐ฌ๐ง
blik2108
2026-09-13 20:03:55
(3 days ago)
beta.sleepylizard.com:443 34.75.177.20 - - [13/Sep/2026:21:03:45 +0100] "GET /.git-credentials HTTP/ ...
show more
beta.sleepylizard.com:443 34.75.177.20 - - [13/Sep/2026:21:03:45 +0100] "GET /.git-credentials HTTP/1.1" 404 506 "-" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)"
beta.sleepylizard.com:443 34.75.177.20 - - [13/Sep/2026:21:03:45 +0100] "GET /.gitconfig HTTP/1.1" 404 506 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] )"
beta.sleepylizard.com:443 34.75.177.20 - - [13/Sep/2026:21:03:45 +0100] "GET /.gitlab-ci.yml HTTP/1.1" 404 506 "-" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)"
beta.sleepylizard.com:443 34.75.177.20 - - [13/Sep/2026:21:03:45 +0100] "GET /.github/workflows/deploy.yml HTTP/1.1" 404 506 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)"
beta.sleepylizard.com:443 34.75.177.20 - - [13/Sep/2026:21:03:45 +0100] "GET /.git/config HTTP/1.1" 404 506 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)"
...
show less
Brute-Force
๐ฉ๐ช
yvoictra
2026-09-13 18:26:48
(3 days ago)
Bloqueado automรกticamente por CrowdSec. Escenario: crowdsecurity/http-probing
Web App Attack
๐ฆ๐น
Renรฉ Hickersberger
2026-09-13 17:30:11
(3 days ago)
malicious bot detected: violations="ignored-robots-policy"; user_agent="Mozilla/5.0 (compatible; Byt ...
show more
malicious bot detected: violations="ignored-robots-policy"; user_agent="Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36"
show less
Bad Web Bot
๐ฉ๐ช
rh24
2026-09-13 17:29:41
(3 days ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.75.177.20 (US/Uni ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.75.177.20 (US/United States/20.177.75.34.bc.googleusercontent.com)
show less
Bad Web Bot
๐บ๐ธ
ph
2026-09-13 17:11:20
(3 days ago)
Bad web bot attempting to run wp-json on non-WP site
Hacking
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-09-13 16:28:47
(3 days ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.75.177.20 (US/United States/20.1 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.75.177.20 (US/United States/20.177.75.34.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐ธ๐ฌ
crimefireNOC
2026-09-13 16:24:49
(3 days ago)
[waf.rce.eval] waf.rce.eval on https://manakmewa.com/api/v1/validate/code via POST (action: ban+403)
Hacking
Web App Attack
๐บ๐ธ
helios.live
2026-09-13 16:09:15
(3 days ago)
2026/09/13 16:09:14 [error] 618618#618618: *3050042 access forbidden by rule, client: 34.75.177.20, ...
show more
2026/09/13 16:09:14 [error] 618618#618618: *3050042 access forbidden by rule, client: 34.75.177.20, server: kocerroxy.com, request: "GET /.aws/config HTTP/1.1", host: "kocerroxy.com"
2026/09/13 16:09:14 [error] 618618#618618: *3050042 access forbidden by rule, client: 34.75.177.20, server: kocerroxy.com, request: "GET /.aws/credentials HTTP/1.1", host: "kocerroxy.com"
2026/09/13 16:09:14 [error] 618618#618618: *3050042 access forbidden by rule, client: 34.75.177.20, server: kocerroxy.com, request: "GET /dist/.vite/manifest.json HTTP/1.1", host: "kocerroxy.com"
2026/09/13 16:09:14 [error] 618618#618618: *3050057 access forbidden by rule, client: 34.75.177.20, server: kocerroxy.com, request: "GET /.vite/manifest.json HTTP/1.1", host: "kocerroxy.com"
2026/09/13 16:09:14 [error] 618618#618618: *3050042 access forbidden by rule, client: 34.75.177.20, server: kocerroxy.com, request: "GET /.git-credentials HTTP/1.1", host: "kocerroxy.com"
...
show less
Web App Attack
๐ฉ๐ช
zUnlegit
2026-09-13 16:06:45
(3 days ago)
Automated web scanner requested sensitive path: /admin/.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 15:55:47
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.75.177.20 (20.177.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.177.20 (20.177.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 11:55:42.261582 2026] [security2:error] [pid 4191:tid 4191] [client 34.75.177.20:37256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "instagenii.com"] [uri "/.env"] [unique_id "aqbHfkNL1o2CWhEI7c0QWAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-13 15:50:25
(3 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking