๐ฌ๐ง
consul.to
2026-09-03 20:08:00
(7 minutes ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
rdpguard.com
2026-09-03 20:04:26
(11 minutes ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐จ๐ฆ
lakered
2026-09-03 19:57:25
(18 minutes ago)
Detectors: [NGINX] | Reasons: Nginx Honeypot: Sensitive configuration file search | Evidence: High-C ...
show more
Detectors: [NGINX] | Reasons: Nginx Honeypot: Sensitive configuration file search | Evidence: High-Criminality-Signature (ja4:t13d101000 - Ratio:0.92), OS-Signature-Mismatch (UA:Windows/p0f:Linux) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36 | TCP Fingerprint: Linux (Legacy/Embedded) (Link:generic tunnel or VPN, Uptime:37657m)
show less
Hacking
Web App Attack
๐ซ๐ฎ
paissangroup
2026-09-03 19:11:11
(1 hour ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 19:09:29
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.92.51.71 (71.51.92.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.51.71 (71.51.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 15:09:25.331402 2026] [security2:error] [pid 17097:tid 17097] [client 34.92.51.71:17860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whatifandwhynot.xyz"] [uri "/.git/config"] [unique_id "apnF5c0-xF2pVvjY8nZHZQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-03 19:08:00
(1 hour ago)
Fail2Ban - [RECIDIVE]Repeat offender across multiple jails on recidive ... [ice02,mx02,wa01]
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 18:53:48
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.92.51.71 (71.51.92.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.51.71 (71.51.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 14:53:43.121847 2026] [security2:error] [pid 9555:tid 9555] [client 34.92.51.71:65026] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "villagestoner.com"] [uri "/.git/config"] [unique_id "apnCN9wbyb_z9HeudrvzGgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ผ
tye
2026-09-03 18:48:53
(1 hour ago)
Wazuh Alert Evidence: 34.92.51.71 (34.92.51.71) - - [04/Sep/2026:02:48:50 +0800] "GET /.git/config H ...
show more
Wazuh Alert Evidence: 34.92.51.71 (34.92.51.71) - - [04/Sep/2026:02:48:50 +0800] "GET /.git/config HTTP/1.1" 404 5188 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36"
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-03 18:47:56
(1 hour ago)
[03/Sep/2026:21:47:55 +0300] -- 34.92.51.71 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/c ...
show more
[03/Sep/2026:21:47:55 +0300] -- 34.92.51.71 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 18:05:49
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.92.51.71 (71.51.92.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.51.71 (71.51.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 14:05:41.763566 2026] [security2:error] [pid 4263:tid 4263] [client 34.92.51.71:8982] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ramseycountycorruption.com"] [uri "/.git/config"] [unique_id "apm29TWSqr16Ibz6hA7lvgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-03 17:55:35
(2 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.git (Match: /.git)
show less
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 17:06:06
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.92.51.71 (71.51.92.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.51.71 (71.51.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 13:05:59.864343 2026] [security2:error] [pid 32416:tid 32416] [client 34.92.51.71:60502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "twinls.com"] [uri "/.git/config"] [unique_id "apmo9-w_GRdC7SUGMeCz5wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 16:10:01
(4 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 15:44:00
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.92.51.71 (71.51.92.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.51.71 (71.51.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 11:43:54.957898 2026] [security2:error] [pid 12902:tid 12902] [client 34.92.51.71:37436] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "randalcalcote.com"] [uri "/.git/config"] [unique_id "apmVuiy6Vtq_wOdScSWWrAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 15:25:11
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.92.51.71 (71.51.92.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.51.71 (71.51.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 11:25:03.841101 2026] [security2:error] [pid 19697:tid 19697] [client 34.92.51.71:18388] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jessicalevant.com"] [uri "/.git/config"] [unique_id "apmRTxGfcG7aU-Jmb003AwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack