๐ณ๐ฑ
debestelapp
2026-08-28 16:15:07
(7 hours ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 15:22:47
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.25.114 (114.25.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.25.114 (114.25.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 11:22:40.143678 2026] [security2:error] [pid 11339:tid 11339] [client 34.75.25.114:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.forsaleincr.com"] [uri "/.env.dev"] [unique_id "apGnwEsJww2u6c7sfx9SwQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
nzhost.co.nz
2026-08-28 14:49:07
(8 hours ago)
$f2bV_matches
Hacking
Brute-Force
Anonymous
2026-08-28 14:39:03
(8 hours ago)
Unauthorized SSH login attempts
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-08-28 14:26:25
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.25.114 (114.25.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.25.114 (114.25.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 10:26:17.122271 2026] [security2:error] [pid 19664:tid 19698] [client 34.75.25.114:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.mindgardens.com"] [uri "/.env.prod"] [unique_id "apGaiXOzscTQeWZ4X8C2ewAAAYI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 14:03:44
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.25.114 (114.25.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.25.114 (114.25.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 10:03:36.699500 2026] [security2:error] [pid 20268:tid 20268] [client 34.75.25.114:40464] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cgdougm.com"] [uri "/.env"] [unique_id "apGVOJ-ptsoJo1rj_b3MqAAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐น
nomzamo
2026-08-28 13:48:35
(9 hours ago)
Fail2Ban reported: nginx-noscript
Brute-Force
๐ฉ๐ช
filstal.org
2026-08-28 13:41:25
(9 hours ago)
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels an ...
show more
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels and known vulnerability paths.
show less
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
ambor
2026-08-28 12:02:56
(11 hours ago)
Honeypot triggered on tcpdata.com - Attempted to access /.env.prod (config_file_probe). User-Agent: ...
show more
Honeypot triggered on tcpdata.com - Attempted to access /.env.prod (config_file_probe). User-Agent: crusader-worker/1.0
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-08-28 11:46:55
(11 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-28 11:45:49
(11 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 11:43:06
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.25.114 (114.25.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.25.114 (114.25.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 07:43:00.271838 2026] [security2:error] [pid 20181:tid 20181] [client 34.75.25.114:52930] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.washburns.liftreading.com"] [uri "/.env"] [unique_id "apF0RM4J5JpWTAzUfwUS1AAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 11:25:01
(12 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
mnsf
2026-08-28 11:05:55
(12 hours ago)
Scanning/Probing (20)
Brute-Force
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-28 11:00:08
(12 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack