๐ฟ๐ฆ
conure.sh
2026-09-16 12:07:38
(20 hours ago)
csagent: score 21.2: 404 noise floor x5, secrets grab x2; 1 domain(s) in 1s
Web App Attack
๐ซ๐ท
dynamix
2026-09-16 08:49:40
(23 hours ago)
Multiple WAF Violations
Web App Attack
๐ฆ๐บ
A.i.D.A.N.N
2026-09-16 08:31:58
(1 day ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web vulnerability scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 20:03:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.84.153.112 (112.153.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.153.112 (112.153.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:03:08.521197 2026] [security2:error] [pid 12815:tid 12820] [client 34.84.153.112:38012] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "getairborne.com"] [uri "/.env"] [unique_id "aqmkfPH9FdSgKFFmiWN6PQAAAMM"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 17:30:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.84.153.112 (112.153.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.153.112 (112.153.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 13:30:10.899975 2026] [security2:error] [pid 27663:tid 27663] [client 34.84.153.112:45080] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "entetanimiento.com"] [uri "/.env"] [unique_id "aqmAogTgCU2tdxQq2Sn56gAAAAY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
IndigoRidge
2026-09-15 15:00:12
(1 day ago)
34.84.153.112 - - [15/Sep/2026:11:00:09 -0400] "GET /.env HTTP/1.1" 301 162 "https://www.google.com/ ...
show more
34.84.153.112 - - [15/Sep/2026:11:00:09 -0400] "GET /.env HTTP/1.1" 301 162 "https://www.google.com/" "Mozilla/5.0 (compatible; MSIE 7.0; Linux x86_64; .NET CLR 1.3.25253; X11)"
34.84.153.112 - - [15/Sep/2026:11:00:09 -0400] "GET /.env HTTP/1.1" 403 5551 "https://www.google.com/" "Mozilla/5.0 (compatible; MSIE 7.0; Linux x86_64; .NET CLR 1.3.25253; X11)"
34.84.153.112 - - [15/Sep/2026:11:00:12 -0400] "GET //vendor/.env HTTP/1.1" 301 162 "https://www.google.com/" "Mozilla/5.0 (compatible; MSIE 7.0; Linux x86_64; .NET CLR 1.3.25253; X11)"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 12:20:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.84.153.112 (112.153.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.153.112 (112.153.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:20:45.881539 2026] [security2:error] [pid 922655:tid 922655] [client 34.84.153.112:41730] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bayinsights.com"] [uri "/.env"] [unique_id "aqk4HSpOGG-Ovxfs-r-ESQAAACA"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-15 10:26:25
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
maxxsense
2026-09-15 09:05:25
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.84.153.112 (JP/Japan/112.153.84.34.b ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.84.153.112 (JP/Japan/112.153.84.34.bc.googleusercontent.com)
show less
SQL Injection
๐ฉ๐ช
Hazzard
2026-09-15 07:39:05
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection