๐ธ๐ช
vaia.cloud
2026-10-09 17:40:01
(2 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ณ๐ฑ
Iliyan Velinov
2026-10-09 05:28:19
(14 hours ago)
en sapiklardan biri de bu sapik /.env
1.17k
/.env.local
526
/.env.production
447
/.env.development
3 ...
show more
en sapiklardan biri de bu sapik /.env
1.17k
/.env.local
526
/.env.production
447
/.env.development
381
/.env.bak
368
/.env.backup
367
/app/.env
358
/backend/.env
349
/.env.old
322
/api/.env
314
/.env.save
282
/.env.example
279
/.env.staging
278
/server/.env
274
/dev/.env
266
/src/.env
258
/.env.dev
244
show less
Web App Attack
๐ช๐ธ
masterguru
2026-10-08 13:46:00
(1 day ago)
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110- ...
show more
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110-122)
show less
Hacking
Anonymous
2026-10-08 13:37:04
(1 day ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-08 12:03:23
(1 day ago)
[ti-05al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-05al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.212.109.80 - - [08/Oct/2026:14:03:03 +0200] "GET /.git/config HTTP/1.1" 404 2105 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-10-08 10:05:02
(1 day ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-10-08 08:05:28
(1 day ago)
Abuse Detected (16)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 05:33:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.212.109.80 (80.109.212.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.212.109.80 (80.109.212.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 01:33:17.687996 2026] [security2:error] [pid 13108:tid 13108] [client 35.212.109.80:56288] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "juhoanttila.com"] [uri "/.git/config"] [unique_id "ascrHadRZsNuuv6ePsed5wAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 04:37:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.212.109.80 (80.109.212.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.212.109.80 (80.109.212.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 00:37:08.365582 2026] [security2:error] [pid 14845:tid 14845] [client 35.212.109.80:58390] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jugsnet.com"] [uri "/.git/config"] [unique_id "ascd9HAZ5E95Ap1wG_si3wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
altenglaner
2026-10-08 03:58:09
(1 day ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-10-08 01:32:03
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 00:08:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.212.109.80 (80.109.212.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.212.109.80 (80.109.212.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 20:08:44.010724 2026] [security2:error] [pid 310:tid 310] [client 35.212.109.80:57982] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "judysminidonuts.com"] [uri "/.git/config"] [unique_id "asbfDPSagIJm0Zu2-NUJFwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-10-07 23:27:18
(1 day ago)
9.167 requests with url.path *.env
1.767 requests with url.path *phpinfo.php
160 requests with ur ...
show more
9.167 requests with url.path *.env
1.767 requests with url.path *phpinfo.php
160 requests with url.path *.php.bak
show less
Brute-Force
Bad Web Bot
๐ธ๐ฌ
naveeddaros
2026-10-07 21:42:09
(1 day ago)
HTTP Flood DDoS attack detected
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-07 21:27:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.212.109.80 (80.109.212.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.212.109.80 (80.109.212.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 17:27:22.714692 2026] [security2:error] [pid 21639:tid 21639] [client 35.212.109.80:49564] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "judithcaldwell.com"] [uri "/.git/config"] [unique_id "asa5OpUGVRJ2gKh2-Axq0QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack