๐บ๐ธ
EvilTurkey
2026-08-13 12:09:19
(1 month ago)
Web app attack against financial institution website.
Web App Attack
Hacking
Anonymous
2026-08-13 10:19:20
(1 month ago)
"GET /.git/config HTTP/1.1"
Hacking
Web App Attack
Anonymous
2026-08-13 04:31:51
(1 month ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐ฉ๐ช
big-cloud.nl
2026-08-13 00:55:15
(1 month ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-13 00:40:35
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.85.143.144 (144.143.85.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.143.144 (144.143.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 20:40:27.660388 2026] [security2:error] [pid 1989575:tid 1989575] [client 34.85.143.144:50080] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "james.ahlstrom.name"] [uri "/.git/config"] [unique_id "an0Sex5d3cfe0-pD0nQecQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-08-12 23:47:10
(1 month ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-12 23:15:07
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.85.143.144 (144.143.85.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.143.144 (144.143.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 19:15:01.667150 2026] [security2:error] [pid 2267825:tid 2267825] [client 34.85.143.144:36230] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.voodooshop.com"] [uri "/.git/config"] [unique_id "anz-dUuLJy4oeesEfD9AlwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-12 22:46:37
(1 month ago)
Credential and secrets file probing | req: /.git/config | UA: Mozilla/5.0
Hacking
Web App Attack
๐ซ๐ท
conseilgouz
2026-08-12 22:45:30
(1 month ago)
joe-17 : Block hidden directories=>/.git/config(/)
Hacking
๐ซ๐ฎ
Erpelstolz
2026-08-12 22:36:24
(1 month ago)
external host: 34.85.143.144 - - [13/Aug/2026:00:36:23 +0200] "GET /.git/config HTTP/1.1" 403 5605 " ...
show more
external host: 34.85.143.144 - - [13/Aug/2026:00:36:23 +0200] "GET /.git/config HTTP/1.1" 403 5605 "-" "Mozilla/5.0" CF-Ray:- CF-IP:-
show less
Web App Attack
๐ณ๐ฑ
MyGlobalFlowers
2026-08-12 22:14:58
(1 month ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-12 21:51:24
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.85.143.144 (144.143.85.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.143.144 (144.143.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 17:51:17.495093 2026] [security2:error] [pid 674565:tid 674565] [client 34.85.143.144:40168] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marxistphilosophy.org"] [uri "/.git/config"] [unique_id "anzq1W7bG0vumAruxsMSKAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-08-12 21:28:02
(1 month ago)
Accessed trap at '/.git/config'
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-12 20:15:05
(1 month ago)
[12/Aug/2026:23:15:05 +0300] -- 34.85.143.144 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[12/Aug/2026:23:15:05 +0300] -- 34.85.143.144 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-12 20:14:59
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.85.143.144 (144.143.85.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.143.144 (144.143.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 16:14:52.056751 2026] [security2:error] [pid 1286321:tid 1286321] [client 34.85.143.144:46136] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "advantstudio.com"] [uri "/.git/config"] [unique_id "anzUPBDppf9p_kmtpf1wWwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack