๐ณ๐ฑ
e.fierstra
2026-09-03 03:31:07
(10 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ซ๐ท
Catalin Negru
2026-09-03 01:46:30
(12 hours ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-03 01:34:51
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.198.10.70 (70.10.198.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.10.70 (70.10.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:34:45.009041 2026] [security2:error] [pid 24889:tid 24889] [client 35.198.10.70:53976] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.totaleventsandtents.com"] [uri "/src/.git/config"] [unique_id "apjOta2EW1AWAICiepDuTAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
ddw
2026-09-03 01:15:00
(12 hours ago)
ModSecurity detection - Rules: 930130(Restricted File Access Attempt)
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-02 21:59:12
(15 hours ago)
Auto-ban: >3000 req/min op 2026-09-02
Web App Attack
SSH
Hacking
๐จ๐ฆ
polycoda
2026-09-02 20:14:49
(17 hours ago)
AutoBlock: โ๏ธ Configuration File Access (Non Decay-Based)
Hacking
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-02 14:20:03
(23 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 07:34:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.198.10.70 (70.10.198.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.10.70 (70.10.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 03:34:06.899273 2026] [security2:error] [pid 23243:tid 23243] [client 35.198.10.70:39078] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ronniejohnson.net"] [uri "/htdocs/.git/config"] [unique_id "apfRblfozv7qWtW1HqwtHQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-09-02 05:13:36
(1 day ago)
12 attacks on VC URLs:
GET /app/.git/config HTTP/1.1
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 04:55:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.198.10.70 (70.10.198.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.10.70 (70.10.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:55:01.231741 2026] [security2:error] [pid 18225:tid 18225] [client 35.198.10.70:52232] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.earlsworkshop.com"] [uri "/htdocs/.git/config"] [unique_id "apesJT6QFgHGzEn4zJhQVwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 04:37:38
(1 day ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.198.10.70 (BR/Brazil/70.10.198.35. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.198.10.70 (BR/Brazil/70.10.198.35.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฉ๐ช
ghostwarriors
2026-09-02 03:50:03
(1 day ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-09-02 03:27:27
(1 day ago)
35.198.10.70 - - [02/Sep/2026:05:27:24 +0200] "GET /public/.git/config HTTP/1.1" 404 4431 "-" "crusa ...
show more
35.198.10.70 - - [02/Sep/2026:05:27:24 +0200] "GET /public/.git/config HTTP/1.1" 404 4431 "-" "crusader-worker/1.0"
35.198.10.70 - - [02/Sep/2026:05:27:24 +0200] "GET /site/.git/config HTTP/1.1" 404 4431 "-" "crusader-worker/1.0"
35.198.10.70 - - [02/Sep/2026:05:27:24 +0200] "GET /www/.git/config HTTP/1.1" 404 4430 "-" "crusader-worker/1.0"
35.198.10.70 - - [02/Sep/2026:05:27:24 +0200] "GET /wordpress/.git/config HTTP/1.1" 404 4431 "-" "crusader-worker/1.0"
35.198.10.70 - - [02/Sep/2026:05:27:24 +0200] "GET /src/.git/config HTTP/1.1" 404 4430 "-" "crusader-worker/1.0"
35.198.10.70 - - [02/Sep/2026:05:27:24 +0200] "GET /api/.git/config HTTP/1.1" 404 4430 "-" "crusader-worker/1.0"
35.198.10.70 - - [02/Sep/2026:05:27:24 +0200] "GET /.git/config HTTP/1.1" 403 4433 "-" "crusader-worker/1.0"
35.198.10.70 - - [02/Sep/2026:05:27:24 +0200] "GET /htdocs/.git/config HTTP/1.1" 404 4430 "-" "crusader-worker/1.0"
35.198.10.70 - - [02/Sep/2026:05:27:24 +0200] "GET /var/www/.git/config HTTP/1.1" 404 4
show less
Web App Attack
Hacking
๐ฉ๐ช
raph
2026-09-02 02:42:03
(1 day ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐จ๐ญ
Ribeye375
2026-09-02 02:08:18
(1 day ago)
HIPS nginx-access-errors - Block tcp/http,https
Brute-Force