๐ฌ๐ง
consul.to
2026-09-20 15:31:14
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
dynamix
2026-09-20 15:12:16
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-20 15:04:36
(1 day ago)
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35. ...
show more
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35.221.143.0 - - \[20/Sep/2026:17:04:28 +0200\] "GET /@fs/app/.env\?raw\?\? HTTP/1.1" 301 619 "-" "Mozilla/5.0 \(compatible\; GrokBot/1.0\; +https://x.ai/\)"
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
COMAITE
2026-09-20 15:00:22
(1 day ago)
Multiple common web attacks from same source ip.
Web App Attack
Anonymous
2026-09-20 14:14:29
(1 day ago)
Bot detected scanning for vulnerable pages
Port Scan
๐บ๐ธ
Penny Packer
2026-09-20 14:07:27
(1 day ago)
Fail2Ban apache-404
Web App Attack
๐บ๐ธ
robotstxt
2026-09-20 13:56:51
(1 day ago)
35.221.143.0 - - [20/Sep/2026:13:56:43 +0000] "GET /.gitconfig HTTP/2.0" 403 2 "-" "Mozilla/5.0 (com ...
show more
35.221.143.0 - - [20/Sep/2026:13:56:43 +0000] "GET /.gitconfig HTTP/2.0" 403 2 "-" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)" "35.221.143.0" edge="172.71.215.113"
35.221.143.0 - - [20/Sep/2026:13:56:44 +0000] "GET /.git-credentials HTTP/2.0" 403 2 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" "35.221.143.0" edge="172.71.215.113"
35.221.143.0 - - [20/Sep/2026:13:56:44 +0000] "GET /.aws/config HTTP/2.0" 403 36280 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTBot/1.4; +https://openai.com/gptbot" "35.221.143.0" edge="172.71.215.113"
35.221.143.0 - - [20/Sep/2026:13:56:44 +0000] "GET /.aws/credentials HTTP/2.0" 403 36267 "-" "Mozilla/5.0 (compatible; Hunyuan/1.0; +https://hunyuan.tencent.com/)" "35.221.143.0" edge="172.71.215.113"
35.221.143.0 - - [20/Sep/2026:13:56:44 +0000] "GET /.env.example HTTP/2.0" 403 2 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)" "35.221.143.0" edge="172.71.215.113"
...
show less
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-20 13:51:37
(1 day ago)
20 attempts against mh_ha-misbehave-ban on ethyl
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Anytech
2026-09-20 13:41:34
(1 day ago)
Blocked by Conn-Monitor: env-probing
Web App Attack
Hacking
๐ซ๐ท
GabrielJST
2026-09-20 13:39:39
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 35.221.143.0 (TW/Taiwan/0.143.221.35.bc ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.221.143.0 (TW/Taiwan/0.143.221.35.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
๐ฉ๐ช
IloGus
2026-09-20 13:32:21
(1 day ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 13:18:26
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.221.143.0 (0.143.221.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.143.0 (0.143.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 09:18:20.723577 2026] [security2:error] [pid 9974:tid 9974] [client 35.221.143.0:51344] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "asttechgroup.com"] [uri "/.git/HEAD"] [unique_id "aq_dHEjwTp16HaGzAgbL3QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 13:00:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.221.143.0 (0.143.221.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.143.0 (0.143.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 09:00:02.784745 2026] [security2:error] [pid 15480:tid 15480] [client 35.221.143.0:39214] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "anchorroots.com"] [uri "/client/.env"] [unique_id "aq_Y0j9tqp8VcbGV3G6JngAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
oralunal
2026-09-20 12:59:35
(1 day ago)
IP banned by Fail2Ban in jail ah-suss access.log mvfnds
...
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 12:50:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack