🇬🇧
consul.to
2026-09-05 01:56:38
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
🇩🇪
LRob
2026-09-05 01:10:09
(1 day ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /app/.git/config (+1 more) | 2026-09-05 01:10 UTC
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 22:27:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.194.184.25 (25.184.194.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.184.25 (25.184.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 18:27:21.744500 2026] [security2:error] [pid 31224:tid 31224] [client 35.194.184.25:57902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "register-yacht-bahamas.com.yacht-register-holland.com"] [uri "/src/.git/config"] [unique_id "aptFyV6h9vwY4u23mmZNJgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-04 22:01:48
(1 day ago)
Auto-ban: >3000 req/min op 2026-09-04
Web App Attack
SSH
Hacking
🇫🇷
dynamix
2026-09-04 21:34:47
(1 day ago)
Multiple WAF Violations
Web App Attack
🇩🇪
SCHAPPY
2026-09-04 21:11:20
(1 day ago)
Malicious activity from IP detected: crowdsecurity/http-sensitive-files.
Web App Attack
Hacking
🇩🇪
dbmwebdesign
2026-09-04 20:50:08
(1 day ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 20:48:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.194.184.25 (25.184.194.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.184.25 (25.184.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 16:48:43.341322 2026] [security2:error] [pid 28206:tid 28206] [client 35.194.184.25:42652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "donutburger.com"] [uri "/wordpress/.git/config"] [unique_id "apsuq124RMeLYTfPdQQt0QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 20:16:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.194.184.25 (25.184.194.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.184.25 (25.184.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 16:16:48.127267 2026] [security2:error] [pid 32435:tid 32435] [client 35.194.184.25:43984] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "donnrowe.com"] [uri "/html/.git/config"] [unique_id "apsnMJ5rwfA1zOxGjv1p2wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
mieg
2026-09-04 19:16:41
(1 day ago)
Web vulnerability probing
Brute-Force
Web App Attack
🇮🇹
VHosting
2026-09-04 15:50:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇱🇻
garmtech.com
2026-09-04 11:57:29
(1 day ago)
Attempted access to sensitive endpoint (/wordpress/.git/config) detected. Automated scan or unauthor ...
show more
Attempted access to sensitive endpoint (/wordpress/.git/config) detected. Automated scan or unauthorized probing.
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 09:49:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.194.184.25 (25.184.194.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.184.25 (25.184.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 05:49:30.808385 2026] [security2:error] [pid 3791:tid 3791] [client 35.194.184.25:53178] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "buffaloweddingdeejay.com"] [uri "/public/.git/config"] [unique_id "apqUKra9uS-ZtntfCPaBfAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 08:06:26
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 06:21:53
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.194.184.25 (25.184.194.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.184.25 (25.184.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 02:21:48.800213 2026] [security2:error] [pid 8830:tid 8830] [client 35.194.184.25:53408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.killigrewcompany.com"] [uri "/site/.git/config"] [unique_id "appjfI-NYOA2Bwyykz2pGwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack