๐จ๐ญ
TheCoon
2026-07-25 23:30:01
(1 day ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
๐ณ๐ฟ
Antinson
2026-07-25 23:04:01
(1 day ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐ฉ๐ช
Blexyel
2026-07-25 22:49:31
(1 day ago)
35.196.137.1 - - [26/Jul/2026:00:49:30 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "-" "pingusmc. ...
show more
35.196.137.1 - - [26/Jul/2026:00:49:30 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "-" "pingusmc.org"
...
show less
Brute-Force
Web App Attack
๐ฟ๐ฆ
conure
2026-07-25 22:19:42
(1 day ago)
csagent: score 17.1: secrets grab x2; 1 domain(s) in 1m0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 22:15:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.196.137.1 (1.137.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.137.1 (1.137.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 18:14:59.197444 2026] [security2:error] [pid 3999159:tid 3999159] [client 35.196.137.1:52270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.be4ventures.com"] [uri "/.git/config"] [unique_id "amU1Y_zBwwecewjAMSn2oAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-07-25 19:51:21
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2026-07-25 19:05:52
(1 day ago)
AutoBlock: โ๏ธ Configuration File Access (Non Decay-Based)
Hacking
Web App Attack
๐ฎ๐ฉ
Burayot
2026-07-25 18:49:36
(1 day ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.196.137.1 (US/United States/1.13 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.196.137.1 (US/United States/1.137.196.35.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 18:39:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.196.137.1 (1.137.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.137.1 (1.137.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 14:39:11.473901 2026] [security2:error] [pid 1212067:tid 1212067] [client 35.196.137.1:44244] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.margroberts.com"] [uri "/.git/config"] [unique_id "amUCz34Rz4hjdRVdNdcGuQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 18:14:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.196.137.1 (1.137.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.137.1 (1.137.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 14:14:40.755401 2026] [security2:error] [pid 11671:tid 11671] [client 35.196.137.1:56924] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.luxebikinis.com"] [uri "/.git/config"] [unique_id "amT9EKZ7OEGBF2sW-bocfgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
filstal.org
2026-07-25 18:03:58
(1 day ago)
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels an ...
show more
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels and known vulnerability paths.
show less
Hacking
Brute-Force
Web App Attack
Anonymous
2026-07-25 17:54:00
(1 day ago)
Sensitive file access attempt
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-25 17:42:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.196.137.1 (1.137.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.137.1 (1.137.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 13:42:48.211854 2026] [security2:error] [pid 1769130:tid 1769130] [client 35.196.137.1:50838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.lifeinsmoke.com"] [uri "/.git/config"] [unique_id "amT1mKKgiJELWXCdKT0XLwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mashamal
2026-07-25 17:32:56
(1 day ago)
Vulnerability Probe
...
Web App Attack
๐ฟ๐ฆ
conure
2026-07-25 17:27:42
(1 day ago)
csagent: score 15.1: secrets grab x3, 404 noise floor x3; 2 domain(s) in 9m0s
Web App Attack