๐ญ๐ฐ
chanatl
2026-05-28 02:40:00
(2 weeks ago)
Web app exploits 122 times, 2026-05-28 08:47:26.239 - 2026-05-28 08:47:26.516 GMT+8
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 07:47:02
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.84.2.220 (220.2.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.2.220 (220.2.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 03:46:58.682168 2026] [security2:error] [pid 16102:tid 16102] [client 34.84.2.220:58322] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.greenquince.com"] [uri "/.git/config"] [unique_id "ahahclM4OCZ0DuopnF0fQAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-05-27 06:41:26
(2 weeks ago)
Login credentials theft attempt
Hacking
Anonymous
2026-05-27 06:05:40
(2 weeks ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
๐ต๐ฑ
Roper123
2026-05-27 06:05:23
(2 weeks ago)
Web app exploits
Web App Attack
๐บ๐ธ
LotPhantom
2026-05-27 05:05:33
(2 weeks ago)
2026/05/27 05:05:33 [error] 3683619#3683619: *85967 access forbidden by rule, client: 34.84.2.220, s ...
show more
2026/05/27 05:05:33 [error] 3683619#3683619: *85967 access forbidden by rule, client: 34.84.2.220, server: staging-api.bridginggaps.tech, request: "GET /.git/config HTTP/1.1", host: "staging-api.bridginggaps.tech"
...
show less
Web App Attack
๐บ๐ธ
its101
2026-05-27 04:45:08
(2 weeks ago)
Automated detection by LockdownAccess security system. Attack type(s): git_exposure. Reason: Nginx: ...
show more
Automated detection by LockdownAccess security system. Attack type(s): git_exposure. Reason: Nginx: git_exposure attack. Path targeted: unknown. Blocked in Cloudflare.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 03:48:18
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.84.2.220 (220.2.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.2.220 (220.2.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 23:48:13.939993 2026] [security2:error] [pid 28733:tid 28733] [client 34.84.2.220:37366] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.willowriver3.com"] [uri "/.git/config"] [unique_id "ahZpffZ2JO9vLUXAsRlqPAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 03:23:36
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.84.2.220 (220.2.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.2.220 (220.2.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 23:23:32.920922 2026] [security2:error] [pid 29373:tid 29373] [client 34.84.2.220:39240] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.adults-biz.com"] [uri "/.git/config"] [unique_id "ahZjtHgKwm7lTw2aUukmEAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Blexyel
2026-05-27 03:20:06
(2 weeks ago)
34.84.2.220 - - [27/May/2026:05:20:06 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 (i ...
show more
34.84.2.220 - - [27/May/2026:05:20:06 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 (iPod; U; CPU iPhone OS 6_1 like Mac OS X; en-HK) AppleWebKit/534.35 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.35 Puffin/3.9174IP Mobile" "pingusmc.org"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 03:03:21
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.84.2.220 (220.2.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.2.220 (220.2.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 23:03:15.017819 2026] [security2:error] [pid 22195:tid 22195] [client 34.84.2.220:34908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.tropicalteethwhitening.com"] [uri "/.git/config"] [unique_id "ahZe88ov79qFt1-szjGNRAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 02:32:38
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.84.2.220 (220.2.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.2.220 (220.2.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 22:32:32.531167 2026] [security2:error] [pid 13081:tid 13081] [client 34.84.2.220:47276] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.vitality-web.com"] [uri "/.git/config"] [unique_id "ahZXwCx1x3dLcXevwHQWSgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-05-27 01:51:43
(2 weeks ago)
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probi ...
show more
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probing.
show less
Web App Attack
๐ญ๐บ
bcsaba
2026-05-27 01:05:04
(2 weeks ago)
Probing for .git:
34.84.2.220 - - [27/May/2026:03:05:01 +0200] "GET /.git/config HTTP/1.1" 400 632 " ...
show more
Probing for .git:
34.84.2.220 - - [27/May/2026:03:05:01 +0200] "GET /.git/config HTTP/1.1" 400 632 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-T819) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Safari/537.36"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 00:39:23
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.84.2.220 (220.2.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.2.220 (220.2.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 20:39:16.856869 2026] [security2:error] [pid 9144:tid 9144] [client 34.84.2.220:36662] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.baysidechiropractic.net"] [uri "/.git/config"] [unique_id "ahY9NOrjK8nup0s_VSCwcQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack