๐บ๐ธ
[email protected]
2026-09-16 10:15:12
(1 day ago)
CrowdSec ban: crowdsecurity/unifi-flood-detection (duration: 71h59m56s)
Port Scan
๐ต๐ฑ
Budyn
2026-09-16 05:34:28
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: admin.budyn.ovh | URI: /dist/.vite/manifest.json | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-16 01:19:32
(1 day ago)
excessive HTTP 404 errors
Bad Web Bot
๐ฎ๐ณ
evicky2002
2026-09-16 00:02:04
(1 day ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐จ๐ฆ
Anytech
2026-09-15 22:25:18
(1 day ago)
Blocked by ConnMonitor
Web App Attack
๐ณ๐ฑ
oisecnet
2026-09-15 21:02:38
(1 day ago)
Automated report: Unauthorized vulnerability scanning detected on 2026-09-15. 503 requests from this ...
show more
Automated report: Unauthorized vulnerability scanning detected on 2026-09-15. 503 requests from this IP.
show less
Port Scan
Hacking
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-15 20:39:11
(1 day ago)
[ti-30al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-30al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.185.77.142 - - [15/Sep/2026:22:39:11 +0200] "GET /.git/HEAD HTTP/2.0" 404 2004 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)"
...
show less
Bad Web Bot
Web App Attack
๐จ๐ณ
Bro Charlie
2026-09-15 20:14:16
(1 day ago)
35.185.77.142 - - [16/Sep/2026:04:14:13 +0800] "GET / HTTP/1.1" 403 16922 "-" "Mozilla/5.0 (Windows ...
show more
35.185.77.142 - - [16/Sep/2026:04:14:13 +0800] "GET / HTTP/1.1" 403 16922 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" "-"
35.185.77.142 - - [16/Sep/2026:04:14:13 +0800] "GET /.aws/credentials HTTP/1.1" 403 16922 "-" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36" "-"
35.185.77.142 - - [16/Sep/2026:04:14:14 +0800] "GET /.s3cfg HTTP/1.1" 403 16922 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )" "-"
35.185.77.142 - - [16/Sep/2026:04:14:14 +0800] "GET /secure HTTP/1.1" 403 16922 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" "-"
35.185.77.142 - - [16/Sep/2026:04:14:14 +0800] "GET /.aws/config HTTP/1.1" 403 16922 "-" "Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave.com/search/)" "-"
35.185.77.142 - - [16/Sep/2026:04:14:14 +0800] "GET /z9x8c7
...
show less
DDoS Attack
๐ช๐ธ
robotstxt
2026-09-15 20:12:32
(1 day ago)
35.185.77.142 - - [15/Sep/2026:20:12:28 +0000] "GET /public/plugins/text/../../../../../../../../pro ...
show more
35.185.77.142 - - [15/Sep/2026:20:12:28 +0000] "GET /public/plugins/text/../../../../../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="35.185.77.142"
35.185.77.142 - - [15/Sep/2026:20:12:28 +0000] "GET /public/plugins/grafana-clock-panel/../../../../../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="35.185.77.142"
35.185.77.142 - - [15/Sep/2026:20:12:28 +0000] "GET /%2E%2E/%2E%2E/%2E%2E/%2E%2E/proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="35.185.77.142"
35.185.77.142 - - [15/Sep/2026:20:12:28 +0000] "GET /%2E%2E/%2E%2E/%2E%2E/%2E%2E/.env HTTP/1.1" 400 193 "-" "-" "-" edge="35.185.77.142"
35.185.77.142 - - [15/Sep/2026:20:12:28 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2fproc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="35.185.77.142"
...
show less
Web Spam
Web App Attack
๐ฉ๐ช
Hary74656
2026-09-15 20:08:11
(1 day ago)
Fail2Ban on schani.hostmi.at: jail=apache-modsecurity, failures=3. No raw log data included.
Web App Attack
๐ธ๐ฌ
Cloudkul Cloudkul
2026-09-15 20:08:08
(1 day ago)
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requ ...
show more
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requests.
show less
Brute-Force
Web App Attack
๐บ๐ธ
[email protected]
2026-09-15 20:02:52
(1 day ago)
CrowdSec ban: crowdsecurity/http-crawl-non_statics (duration: 71h59m58s)
Web App Attack
๐บ๐ธ
jormaster3k
2026-09-15 19:22:30
(1 day ago)
Attack against Apache (too many 404s)
Web App Attack
Anonymous
2026-09-15 18:06:03
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 35.185.77.142 (US/United States/142.77. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.185.77.142 (US/United States/142.77.185.35.bc.googleusercontent.com)
show less
SQL Injection
๐ณ๐ฑ
ConsulHosting
2026-09-15 17:21:42
(1 day ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack