๐ธ๐ช
vaia.cloud
2026-09-03 06:25:02
(5 minutes ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐ซ๐ฎ
โ |สษงฤ
ษฦกแฟณ|โ
2026-09-03 06:14:08
(16 minutes ago)
[2026-09-03 06:14:08 UTC] Vulnerability/exploit scanning detected from 34.9.131.156 (156.131.9.34.bc ...
show more
[2026-09-03 06:14:08 UTC] Vulnerability/exploit scanning detected from 34.9.131.156 (156.131.9.34.bc.googleusercontent.com) PATHS: unknown
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
gamabe
2026-09-03 06:11:24
(19 minutes ago)
Detected crowdsecurity/http-sensitive-files attack pattern. Reported by CrowdSec IDS.
Hacking
๐ซ๐ท
masterguru
2026-09-03 04:21:09
(2 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ฉ๐ช
raph
2026-09-03 03:31:33
(2 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐ฉ๐ช
SwinT
2026-09-03 00:00:16
(6 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
WizardsToolkit
2026-09-02 21:16:52
(9 hours ago)
attempted to access /backup.sql
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-02 11:28:11
(19 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2026-09-02 08:13:09
(22 hours ago)
AutoBlock: โ๏ธ Configuration File Access (Non Decay-Based)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 07:14:53
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.9.131.156 (156.131.9.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.9.131.156 (156.131.9.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 03:14:48.542229 2026] [security2:error] [pid 1597:tid 1597] [client 34.9.131.156:57992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rmhpolarracing.com.wolter-hausser.com"] [uri "/public/.git/config"] [unique_id "apfM6N-rxibceb4QREtV3gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 06:05:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.9.131.156 (156.131.9.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.9.131.156 (156.131.9.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:05:14.180397 2026] [security2:error] [pid 32313:tid 32313] [client 34.9.131.156:47968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.pinkrays.com"] [uri "/.git/config"] [unique_id "ape8mvoXR-XANMND05I8PgAAAD4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-02 05:36:06
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 34.9.131.156 (US/United States/156.131.9.34.bc. ...
show more
(mod_security) mod_security (id:949110) triggered by 34.9.131.156 (US/United States/156.131.9.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 05:33:39
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 34.9.131.156 (156.131.9.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.9.131.156 (156.131.9.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:33:36.446165 2026] [security2:error] [pid 28097:tid 28097] [client 34.9.131.156:46370] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "mail.euro-theatre.com"] [uri "/app/.git/config"] [unique_id "ape1MMmxulylK7o76T7b7QAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-09-02 05:13:24
(1 day ago)
12 attacks on VC URLs:
GET /htdocs/.git/config HTTP/1.1
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 05:11:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.9.131.156 (156.131.9.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.9.131.156 (156.131.9.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:10:55.209088 2026] [security2:error] [pid 8149:tid 8149] [client 34.9.131.156:40292] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.itony.com"] [uri "/app/.git/config"] [unique_id "apev3w79EYprof2T100f6gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack