🇳🇱
Site.eu
2026-09-07 03:25:29
(51 minutes ago)
Excessive multi-domain requests
Brute-Force
🇫🇷
masterguru
2026-09-07 01:48:17
(2 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 00:17:51
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.190.184.188 (188.184.190.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.190.184.188 (188.184.190.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 20:17:46.442756 2026] [security2:error] [pid 8151:tid 8151] [client 35.190.184.188:48832] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.codenames.liftreading.com"] [uri "/.git/config"] [unique_id "ap4CqiyHykg4HkLH-SPF8wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-06 23:01:07
(5 hours ago)
Excessive 404/403 errors
Brute-Force
🇺🇸
TPI-Abuse
2026-09-06 21:35:51
(6 hours ago)
(mod_security) mod_security (id:949110) triggered by 35.190.184.188 (188.184.190.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:949110) triggered by 35.190.184.188 (188.184.190.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 17:35:44.427594 2026] [security2:error] [pid 21589:tid 21589] [client 35.190.184.188:56284] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.code.freedrm.org"] [uri "/.git/config"] [unique_id "ap3csGpHR_LfK54QpmMUwAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-06 19:03:05
(9 hours ago)
Multiple WAF Violations
Web App Attack
🇧🇪
taivas.nl
2026-09-06 19:02:10
(9 hours ago)
Bad_requests
Bad Web Bot
Anonymous
2026-09-06 18:39:43
(9 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-06 17:40:19
(10 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇳🇿
Antinson
2026-09-06 17:11:09
(11 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-06 16:54:29
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.190.184.188 (188.184.190.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.190.184.188 (188.184.190.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 12:54:22.160886 2026] [security2:error] [pid 5301:tid 5301] [client 35.190.184.188:53736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cocinasintegralesjp.com.spyasociados.com"] [uri "/.git/config"] [unique_id "ap2avtVFFzFh7q_eXZLfywAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-06 15:35:04
(12 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇫🇷
Octopuce
2026-09-06 15:10:24
(13 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 14:42:29
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.190.184.188 (188.184.190.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.190.184.188 (188.184.190.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 10:42:25.557601 2026] [security2:error] [pid 16221:tid 16221] [client 35.190.184.188:39036] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cobbwebb.net.greighhouse.com"] [uri "/.git/config"] [unique_id "ap170dwvEzqGaTcJ5Z0M2QAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
cwytech
2026-09-06 14:42:28
(13 hours ago)
Fleet-wide ban from the Ghostfleet 👻. Triggered by scenario: cwy/http-honeypath-sniper-crit.
Bad Web Bot
Web App Attack