🇬🇧
openstrike.co.uk
2026-09-05 05:14:52
(1 day ago)
12 attacks on VC URLs:
GET /var/www/.git/config HTTP/1.1
Hacking
🇺🇸
TPI-Abuse
2026-09-05 01:51:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.214.225 (225.214.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.214.225 (225.214.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 21:51:04.683666 2026] [security2:error] [pid 6789:tid 6789] [client 34.97.214.225:52058] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jimwilsonstudios.com"] [uri "/src/.git/config"] [unique_id "apt1iNL0BqtXLOynCpI7KAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 22:50:04
(1 day ago)
suspicious request in access.log
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 21:44:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.97.214.225 (225.214.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.214.225 (225.214.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:44:04.566515 2026] [security2:error] [pid 6839:tid 6839] [client 34.97.214.225:54840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.termstech.com"] [uri "/.git/config"] [unique_id "aps7pK-sqJ5mvcUlexEmDQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
webanyone
2026-09-04 18:16:40
(2 days ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
🇷🇴
iulianh
2026-09-04 17:01:06
(2 days ago)
80,443
Brute-Force
SSH
🇺🇸
TPI-Abuse
2026-09-04 06:59:51
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.97.214.225 (225.214.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.214.225 (225.214.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 02:59:46.141035 2026] [security2:error] [pid 3411:tid 3411] [client 34.97.214.225:46416] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mothersdaybouquet.net"] [uri "/htdocs/.git/config"] [unique_id "appsYm2T0TgXNiqLS3lZBgAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 05:34:55
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.97.214.225 (225.214.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.214.225 (225.214.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 01:34:51.994332 2026] [security2:error] [pid 30963:tid 30963] [client 34.97.214.225:60414] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thelotsmokehouse.com"] [uri "/app/.git/config"] [unique_id "appYe1LwLFgZUMFewOyMeAAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 01:50:20
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.97.214.225 (225.214.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.214.225 (225.214.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 21:50:15.189815 2026] [security2:error] [pid 7207:tid 7207] [client 34.97.214.225:44004] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "albertawaterjet.com"] [uri "/www/.git/config"] [unique_id "apoj11giR8sS8iH8LIwiUAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FD-IX
2026-09-03 23:32:40
(2 days ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 23:29:57
(2 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-03 21:13:37
(3 days ago)
Scanner hitting /wordpress/.git/config on 176.31.46.240 (GOOGL-2) — aaguard
Brute-Force
Port Scan
🇺🇸
CBJ
2026-09-03 16:32:48
(3 days ago)
fail2ban: apache-filepath-recon
...
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 16:02:00
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.97.214.225 (225.214.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.214.225 (225.214.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 12:01:53.032933 2026] [security2:error] [pid 8322:tid 8416] [client 34.97.214.225:59608] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yt.kd9uri.com"] [uri "/wordpress/.git/config"] [unique_id "apmZ8RmQAm_UMpJgGhUo_gAAAUg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Vegascosmetics
2026-09-03 15:54:19
(3 days ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.git (Match: /.git)
show less
Hacking
Brute-Force
Web App Attack