π¦πͺ
CG
2026-08-24 16:11:55
(2 days ago)
Web application attack, Automated scan
Web App Attack
Hacking
SQL Injection
π«π·
ELYAZ
2026-08-24 15:42:38
(2 days ago)
(y3) Failed access -byebye- from 35.194.171.177 (TW/Taiwan/177.171.194.35.bc.googleusercontent.com): ...
show more
(y3) Failed access -byebye- from 35.194.171.177 (TW/Taiwan/177.171.194.35.bc.googleusercontent.com): (CF_ENABLE)
show less
Hacking
πΊπΈ
CBJ
2026-08-24 15:36:23
(2 days ago)
fail2ban: apache-filepath-recon
...
Web App Attack
π©πͺ
Blexyel
2026-08-24 15:28:06
(2 days ago)
35.194.171.177 - - [24/Aug/2026:17:28:06 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 ...
show more
35.194.171.177 - - [24/Aug/2026:17:28:06 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Brute-Force
Web App Attack
πΊπΈ
0tsystems
2026-08-24 15:26:42
(2 days ago)
Automated scan detected on 0t.systems: /.git
Web App Attack
π¬π§
consul.to
2026-08-24 15:26:14
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
π΅π±
Budyn
2026-08-24 15:25:32
(2 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: budyn.wtf | URI: /.git/config | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
πΊπΈ
cwytech
2026-08-24 15:21:51
(2 days ago)
Fleet-wide ban from the Ghostfleet π». Triggered by scenario: cwy/http-honeypath-sniper-crit.
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 15:21:18
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.194.171.177 (177.171.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.171.177 (177.171.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 11:21:14.079174 2026] [security2:error] [pid 32740:tid 32740] [client 35.194.171.177:11230] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cynosure.email"] [uri "/.git/config"] [unique_id "aoxhasIuabHs68zUhM4NhAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
MPL
2026-08-24 15:16:58
(2 days ago)
tcp/443 (4 or more attempts)
Port Scan
π©πͺ
big-cloud.nl
2026-08-24 14:17:19
(2 days ago)
Try to access /.git/config
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 14:00:24
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.194.171.177 (177.171.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.171.177 (177.171.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 10:00:19.599413 2026] [security2:error] [pid 18102:tid 18102] [client 35.194.171.177:28266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "okeetokee.org"] [uri "/.git/config"] [unique_id "aoxOc9OFsAeTwuoP8gMNEgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 13:20:19
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 35.194.171.177 (177.171.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.171.177 (177.171.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 09:20:12.969474 2026] [security2:error] [pid 3101:tid 3116] [client 35.194.171.177:37318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ethicmark.org"] [uri "/.git/config"] [unique_id "aoxFDEZLqktOlnvYSvd6JQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 13:00:17
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 35.194.171.177 (177.171.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.171.177 (177.171.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 09:00:10.663146 2026] [security2:error] [pid 10269:tid 10269] [client 35.194.171.177:11448] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "appalachianfieldstofamilies.org"] [uri "/.git/config"] [unique_id "aoxAWiFv296ClhaiYl9wsQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
ParaBug
2026-08-24 12:50:10
(3 days ago)
35.194.171.177 - - [24/Aug/2026:14:50:09 +0200] "GET /.git/config HTTP/1.1" 301 4710 "-" "Mozilla/5. ...
show more
35.194.171.177 - - [24/Aug/2026:14:50:09 +0200] "GET /.git/config HTTP/1.1" 301 4710 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Phishing
Brute-Force
Web App Attack