🇫🇷
dynamix
2026-09-05 12:16:44
(2 hours ago)
Multiple WAF Violations
Web App Attack
🇨🇱
ovallevelasquezanibal
2026-09-05 12:00:11
(2 hours ago)
Detectado por Wazuh SIEM en api-ux.com | Alertas: 12 | Nivel max: 5 | Agentes: web-apiux-2025 | Web ...
show more
Detectado por Wazuh SIEM en api-ux.com | Alertas: 12 | Nivel max: 5 | Agentes: web-apiux-2025 | Web server 400 error code.
show less
Port Scan
Hacking
🇺🇸
TPI-Abuse
2026-09-04 23:59:29
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.92.65.214 (214.65.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.65.214 (214.65.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 19:59:23.678874 2026] [security2:error] [pid 4029:tid 4029] [client 34.92.65.214:48052] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "talesofhartwellhouse.com.johnpritchett.com"] [uri "/public/.git/config"] [unique_id "aptbW6wJPMGwaQrlg6RbFwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 23:04:06
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.92.65.214 (214.65.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.65.214 (214.65.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 19:04:01.488568 2026] [security2:error] [pid 1741426:tid 1741426] [client 34.92.65.214:39314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rnmultiservicios.cyber507.net"] [uri "/api/.git/config"] [unique_id "aptOYacR8I6kGm6_-j0_1AAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇦
Olexiy Backend
2026-09-04 23:01:52
(15 hours ago)
34.92.65.214
...
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-04 22:44:44
(15 hours ago)
264 requests with url.path */.git/config
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-04 21:46:59
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.92.65.214 (214.65.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.65.214 (214.65.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:46:52.146490 2026] [security2:error] [pid 3842992:tid 3843000] [client 34.92.65.214:58116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.backcountrygardens.com"] [uri "/api/.git/config"] [unique_id "aps8TJDYVZGnvX6lqI4tswAAAEQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Aetherweb Ark
2026-09-04 21:21:31
(16 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.92.65.214 (HK/Hong Kong/214.65.92.34.bc.goog ...
show more
(mod_security) mod_security (id:949110) triggered by 34.92.65.214 (HK/Hong Kong/214.65.92.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 19:22:12
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.92.65.214 (214.65.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.65.214 (214.65.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 15:22:04.383480 2026] [security2:error] [pid 10827:tid 10827] [client 34.92.65.214:34930] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thanksgivingcardsprinted.com"] [uri "/public/.git/config"] [unique_id "apsaXOl3rMVKB3VVIwvUgQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-04 19:11:10
(19 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 13:47:01
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.92.65.214 (214.65.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.65.214 (214.65.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 09:46:56.560951 2026] [security2:error] [pid 27415:tid 27415] [client 34.92.65.214:49390] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bccworldmedia.com"] [uri "/www/.git/config"] [unique_id "aprL0NoPk49rBCoGxRY0vAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
tsZero
2026-09-04 11:50:12
(1 day ago)
Scan example: path=/backend/.git/config status=403
Hacking
🇬🇧
consul.to
2026-09-04 11:24:55
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
Gabriel Camargo
2026-09-04 11:05:38
(1 day ago)
34.92.65.214 - - [04/Sep/2026:06:05:37 -0500] "GET /htdocs/.git/config HTTP/1.1" 301 178 "-" "crusad ...
show more
34.92.65.214 - - [04/Sep/2026:06:05:37 -0500] "GET /htdocs/.git/config HTTP/1.1" 301 178 "-" "crusader-worker/1.0"
34.92.65.214 - - [04/Sep/2026:06:05:37 -0500] "GET /site/.git/config HTTP/1.1" 301 178 "-" "crusader-worker/1.0"
34.92.65.214 - - [04/Sep/2026:06:05:37 -0500] "GET /.git/config HTTP/1.1" 301 178 "-" "crusader-worker/1.0"
...
show less
Brute-Force
SSH
🇸🇪
vaia.cloud
2026-09-04 07:00:12
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack