๐ฎ๐น
paoloartone
2026-10-10 05:00:27
(1 day ago)
Reverse proxy TCO: 266 richieste malevole bloccate (scan/exploit/brute-force WordPress) il 09/10/202 ...
show more
Reverse proxy TCO: 266 richieste malevole bloccate (scan/exploit/brute-force WordPress) il 09/10/2026.
show less
Web App Attack
Hacking
Port Scan
๐ณ๐ฑ
homeshowdomain.nl
2026-10-09 21:59:52
(2 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-10-08.
show less
Web App Attack
SSH
Hacking
๐ฌ๐ง
openstrike.co.uk
2026-10-09 05:15:13
(2 days ago)
147 attacks on shell probes, env grabbing URLs, VC URLs, config grabbing URLs (type 2), directory tr ...
show more
147 attacks on shell probes, env grabbing URLs, VC URLs, config grabbing URLs (type 2), directory traversals, PHP URLs, password/key grabbing URLs, env grabbing URLs (type 2):
POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1
GET /@fs/.env?import&?raw?? HTTP/1.1
GET /.git/config HTTP/1.1
GET /app-config.json HTTP/1.1
GET /..%2f.env HTTP/1.1
POST /index.php?-d+allow_url_include%3don+-d+auto_prepend_file%3dphp://input HTTP/1.1
GET /__vite_rsc_findSourceMapURL?filename=file:///root/.ssh/id_rsa&environmentName=rsc HTTP/1.1
GET /public/plugins/alertlist/../../../../../../../../proc/self/environ HTTP/1.1
show less
Hacking
Web App Attack
Anonymous
2026-10-09 04:29:50
(2 days ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-10-09 02:40:13
(2 days ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted]): (CF_ENABLE)
Bad Web Bot
๐ฉ๐ช
barbarella
2026-10-09 02:35:42
(2 days ago)
Multiple (263) times attack on https port 443: configuration snooping of .json files (GET /static/ma ...
show more
Multiple (263) times attack on https port 443: configuration snooping of .json files (GET /static/manifest.json)
04:35:42 configuration snooping of .json files (GET /webpack-stats.json)
04:35:42 configuration snooping of .json files (GET /asset-manifest.json)
04:35:42 illegal attempt to access nonexisting folder (GET /assets/manifest.json)
04:35:42 configuration snooping of .json files (GET /dist/manifest.json)
04:35:42 Configuration snooping with .env file (GET /dashboard%2F.env)
04:35:42 Configuration snooping with .env file (GET /static//home/user/.env)
04:35:42 Configuration snooping with .env file (GET /static//.env)
04:35:42 Configuration snooping with .env file (GET /css../.env)
show less
Hacking
Web App Attack
๐ซ๐ท
โจ
2026-10-09 02:21:17
(2 days ago)
Domain : g1architecture.com
Rule : hack
2026-10-09 02:20:15 ***hidden-privacy*** GET /.env.bak - 443 ...
show more
Domain : g1architecture.com
Rule : hack
2026-10-09 02:20:15 ***hidden-privacy*** GET /.env.bak - 443 - 34.77.51.30 HTTP/2 Mozilla/5.0 (compatible; KimiBot/1.0; https://kimi.ai/) - g1architecture.com 404 0 2 1554 433 49 - -
show less
Hacking
SQL Injection
Brute-Force
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-10-09 02:14:44
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/grafana-cve-2021-43798
Web App Attack
Hacking
๐ธ๐ฌ
Cloudkul Cloudkul
2026-10-09 01:48:22
(2 days ago)
Attempted Brute Force on our application
Brute-Force
Web App Attack
๐ซ๐ฎ
YF
2026-10-09 01:30:42
(2 days ago)
404 errors Vulnerability scan
Web App Attack
๐ช๐ธ
robotstxt
2026-10-09 01:05:52
(2 days ago)
34.77.51.30 - - [09/Oct/2026:01:05:07 +0000] "GET /z9x8c7v6b5-debug-trigger-fundaciopacopuerto.cat H ...
show more
34.77.51.30 - - [09/Oct/2026:01:05:07 +0000] "GET /z9x8c7v6b5-debug-trigger-fundaciopacopuerto.cat HTTP/2.0" 403 48110 "-" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)" "34.77.51.30" edge="172.71.126.195"
34.77.51.30 - - [09/Oct/2026:01:05:07 +0000] "GET /.vite/manifest.json HTTP/2.0" 403 48110 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "34.77.51.30" edge="172.71.126.195"
34.77.51.30 - - [09/Oct/2026:01:05:07 +0000] "GET /dist/manifest.json HTTP/2.0" 403 48120 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "34.77.51.30" edge="172.71.126.195"
34.77.51.30 - - [09/Oct/2026:01:05:07 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 48112 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "34.77.51.30" edge="172.71.126.195"
34.77.51.30 - - [09/Oct/2026:01:05:07 +00
...
show less
Web App Attack
๐บ๐ธ
TAY
2026-10-09 00:37:56
(2 days ago)
34.77.51.30 - - [09/Oct/2026:08:37:53 +0800] "GET /public/plugins/text/../../../../../../../../proc/ ...
show more
34.77.51.30 - - [09/Oct/2026:08:37:53 +0800] "GET /public/plugins/text/../../../../../../../../proc/self/environ HTTP/1.1" 400 2057 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36; compatible; OAI-SearchBot/1.4; +https://openai.com/searchbot"
34.77.51.30 - - [09/Oct/2026:08:37:53 +0800] "GET /@fs/../.env?raw?? HTTP/1.1" 404 2050 "-" "CCBot/2.0 (https://commoncrawl.org/faq/)"
34.77.51.30 - - [09/Oct/2026:08:37:54 +0800] "GET /@fs/../.env?import&raw?? HTTP/1.1" 404 2050 "-" "Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)"
34.77.51.30 - - [09/Oct/2026:08:37:55 +0800] "GET /_nuxt/../.env HTTP/1.1" 404 2050 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Perplexity-User/1.0; +https://perplexity.ai/perplexitybot)"
34.77.51.30 - - [09/Oct/2026:08:37:55 +0800] "GET /_image?href=/../../../.env HTTP/1.1" 404 7866 "-" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)"
34.77.51.30 - - [
...
show less
Brute-Force
Anonymous
2026-10-09 00:05:08
(2 days ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
WizardsToolkit
2026-10-08 23:41:14
(2 days ago)
tried to access forbidden files; attempted to access /@fs/app/.env?raw??
Web App Attack
๐ฉ๐ช
crypto i trust, hold i must
2026-10-08 23:23:57
(2 days ago)
Web scanner path: /.ssh/config
Web App Attack