๐ฉ๐ช
LRob
2026-08-28 19:07:09
(55 minutes ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+11 more) | 2026-08-28 19:07 UTC
show less
Hacking
Web App Attack
Anonymous
2026-08-28 16:52:36
(3 hours ago)
34.97.209.28 - - [28/Aug/2026:18:52:26 +0200] "GET /app/.git/config HTTP/1.1" 403 146 "-" "crusader- ...
show more
34.97.209.28 - - [28/Aug/2026:18:52:26 +0200] "GET /app/.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0"
34.97.209.28 - - [28/Aug/2026:18:52:26 +0200] "GET /src/.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0"
34.97.209.28 - - [28/Aug/2026:18:52:26 +0200] "GET /html/.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0"
...
show less
Web App Attack
๐บ๐ธ
Vash7589
2026-08-28 13:34:13
(6 hours ago)
Gate: Unknown IP attempted access: 34.97.209.28
Brute-Force
SSH
๐บ๐ธ
conrad10781
2026-08-28 12:41:53
(7 hours ago)
nginx-4xx
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 12:37:05
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.209.28 (28.209.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.209.28 (28.209.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 08:36:57.640513 2026] [security2:error] [pid 21386:tid 21386] [client 34.97.209.28:50086] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "klingandi.com.bridgital.com"] [uri "/.git/config"] [unique_id "apGA6e3E8OMkTrhweUdQOgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 12:10:01
(7 hours ago)
suspicious request in access.log
Web App Attack
๐ณ๐ฟ
Antinson
2026-08-28 11:29:50
(8 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐ฌ๐ง
consul.to
2026-08-28 11:00:19
(9 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-08-28 05:14:20
(14 hours ago)
12 attacks on VC URLs:
GET /htdocs/.git/config HTTP/1.1
Hacking
Anonymous
2026-08-28 04:35:29
(15 hours ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-08-27 17:15:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.209.28 (28.209.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.209.28 (28.209.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 13:15:18.646966 2026] [security2:error] [pid 22168:tid 22168] [client 34.97.209.28:35266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.landing.veneerdent.com"] [uri "/public/.git/config"] [unique_id "apBwpntsasKpT4BIe1kb-AAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐พ
lns.bz
2026-08-27 17:02:35
(1 day ago)
Too many 404 requests [BY]
Web App Attack
๐จ๐ฆ
TechnoSolutions CL
2026-08-27 16:22:39
(1 day ago)
34.97.209.28 - - [27/Aug/2026:16:22:38 +0000] "GET /api/.git/config HTTP/1.1" 444 0 "-" "crusader-wo ...
show more
34.97.209.28 - - [27/Aug/2026:16:22:38 +0000] "GET /api/.git/config HTTP/1.1" 444 0 "-" "crusader-worker/1.0"
34.97.209.28 - - [27/Aug/2026:16:22:38 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "crusader-worker/1.0"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:10:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.209.28 (28.209.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.209.28 (28.209.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:09:59.779193 2026] [security2:error] [pid 32738:tid 32738] [client 34.97.209.28:52194] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "styxwamworld.grayhost.net"] [uri "/html/.git/config"] [unique_id "apBhV-8sXj70vdvx8RbhtwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 15:51:31
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.209.28 (28.209.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.209.28 (28.209.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 11:51:24.885389 2026] [security2:error] [pid 8326:tid 8326] [client 34.97.209.28:57402] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.jonnyonthespot.biz"] [uri "/html/.git/config"] [unique_id "apBc_Ll-F-LpP4iVK-4NUgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack