๐บ๐ธ
TPI-Abuse
2026-09-26 16:07:32
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.93.186.0 (0.186.93.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.186.0 (0.186.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 12:07:26.606350 2026] [security2:error] [pid 23223:tid 23223] [client 34.93.186.0:46046] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.marcosmelero.com"] [uri "/.git/config"] [unique_id "arftvudVvhKAPrt6cA0gNQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-25 23:06:12
(21 hours ago)
Trying to access config files
Web App Attack
๐ต๐ฑ
strefapi_com
2026-09-25 05:29:16
(1 day ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-09-25 04:27:09
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
Anonymous
2026-09-25 03:05:37
(1 day ago)
IncogNET WAF local CrowdSec decision. Scenario=crowdsecurity/appsec-vpatch; Action=ban; Events=2; Co ...
show more
IncogNET WAF local CrowdSec decision. Scenario=crowdsecurity/appsec-vpatch; Action=ban; Events=2; Country=IN; ASN=396982 GOOGLE-CLOUD-PLATFORM
show less
Hacking
Anonymous
2026-09-25 02:01:47
(1 day ago)
IncogNET WAF local CrowdSec decision. Scenario=crowdsecurity/http-sensitive-files; Action=ban; Event ...
show more
IncogNET WAF local CrowdSec decision. Scenario=crowdsecurity/http-sensitive-files; Action=ban; Events=5; Hosts=admin.incogvps.com; Paths=/.env,/.env.backup,/.env.bak,/.env.save,/.git/config; Country=IN; ASN=396982 GOOGLE-CLOUD-PLATFORM
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 19:18:30
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.186.0 (0.186.93.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.186.0 (0.186.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 15:18:25.800603 2026] [security2:error] [pid 11981:tid 11981] [client 34.93.186.0:59446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.nccb.org"] [uri "/.git/config"] [unique_id "arV3gf1s_eJB6UQ6CLR1SQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 18:47:02
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.186.0 (0.186.93.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.186.0 (0.186.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 14:46:55.485934 2026] [security2:error] [pid 23098:tid 23098] [client 34.93.186.0:57966] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.navigateworklife.org"] [uri "/.git/config"] [unique_id "arVwH9hxVhRfpUSjKMBJLQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 18:31:57
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.186.0 (0.186.93.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.186.0 (0.186.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 14:31:50.873129 2026] [security2:error] [pid 22947:tid 22947] [client 34.93.186.0:58094] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.naturalpozzolanassociation.org"] [uri "/.git/config"] [unique_id "arVslk-xM0ofCYQShXJ_VAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 17:51:29
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.186.0 (0.186.93.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.186.0 (0.186.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 13:51:22.160890 2026] [security2:error] [pid 11180:tid 11180] [client 34.93.186.0:47056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.nashuaboyscouts.org"] [uri "/.git/config"] [unique_id "arVjGj-9u-FUT5IzfPeQlwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-24 05:06:05
(2 days ago)
Trying to access config files
Web App Attack
๐ต๐ฑ
Budyn
2026-09-24 04:36:08
(2 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: admin.astropot.site | URI: /.git/config | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-24 03:11:49
(2 days ago)
Scanner hitting /.git/config on admin.ara-oman.com (GOOGL-2) โ aaguard
Brute-Force
Port Scan
๐ณ๐ฑ
Alt255
2026-09-22 08:17:50
(4 days ago)
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.93.186.0 - - [22/Sep/2026:10:17:35 +0200] "GET /.git/config HTTP/1.1" 404 7430 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 16:31:49
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.186.0 (0.186.93.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.186.0 (0.186.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 12:31:41.972121 2026] [security2:error] [pid 28316:tid 28316] [client 34.93.186.0:33390] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "accinternational.net"] [uri "/.git/config"] [unique_id "arFb7REc0wpX1N76E1dtwgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack