Anonymous
2026-08-27 23:06:17
(4 days ago)
Trying to access config files
Web App Attack
Anonymous
2026-08-27 04:28:40
(5 days ago)
"GET /.git/config HTTP/1.1"
Hacking
Web App Attack
Anonymous
2026-08-26 20:18:10
(5 days ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-08-26 18:50:05
(6 days ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐บ๐ธ
Epimetheus
2026-08-26 18:46:34
(6 days ago)
Unauthorized access attempts:
[GET] /.git/config
UA: Unknown
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 18:38:46
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 35.221.254.126 (126.254.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.254.126 (126.254.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 14:38:42.883810 2026] [security2:error] [pid 24295:tid 24295] [client 35.221.254.126:39290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bfmc.goodacoustic.com"] [uri "/.git/config"] [unique_id "ao8ysjNGFjcOJcUYn0tBcgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-26 18:37:52
(6 days ago)
[26/Aug/2026:21:37:52 +0300] -- 35.221.254.126 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.gi ...
show more
[26/Aug/2026:21:37:52 +0300] -- 35.221.254.126 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
Anonymous
2026-08-26 18:35:23
(6 days ago)
Trying to access config files
Web App Attack
๐ฉ๐ช
LRob
2026-08-26 18:34:33
(6 days ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-08-26 18:34 UTC
show less
Hacking
Web App Attack
๐ฉ๐ช
yitzhaq
2026-08-26 18:22:20
(6 days ago)
35.221.254.126 - - [26/Aug/2026:20:06:05 +0200] "GET /.git/config HTTP/1.1" 403 4478 "-" "-"
35.221. ...
show more
35.221.254.126 - - [26/Aug/2026:20:06:05 +0200] "GET /.git/config HTTP/1.1" 403 4478 "-" "-"
35.221.254.126 - - [26/Aug/2026:20:06:19 +0200] "GET /.git/config HTTP/1.1" 403 4478 "-" "-"
35.221.254.126 - - [26/Aug/2026:20:22:17 +0200] "GET /.git/config HTTP/1.1" 403 4535 "-" "-"
show less
Web App Attack
Hacking
๐ซ๐ท
GEDAL
2026-08-26 18:11:44
(6 days ago)
Fail2ban webexploits @ <hostname> : 35.221.254.126 - - [26/Aug/2026:20:11:43 +0200] "GET /.git/confi ...
show more
Fail2ban webexploits @ <hostname> : 35.221.254.126 - - [26/Aug/2026:20:11:43 +0200] "GET /.git/config HTTP/1.1" 301 162 "-" "-"
show less
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-08-26 17:37:26
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 35.221.254.126 (126.254.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.254.126 (126.254.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 13:37:19.915679 2026] [security2:error] [pid 2272:tid 2272] [client 35.221.254.126:48006] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bethanneblue.net"] [uri "/.git/config"] [unique_id "ao8kT_WvioeZvWsikdAC3wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
sefinek.net
2026-08-26 17:23:25
(6 days ago)
Triggered Cloudflare WAF (firewallCustom) from TW.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from TW.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /.git/config | UA: Empty string โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฎ๐ฉ
Burayot
2026-08-26 17:11:47
(6 days ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.221.254.126 (TW/Taiwan/126.254.2 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.221.254.126 (TW/Taiwan/126.254.221.35.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐ท๐ด
iulianh
2026-08-26 17:01:13
(6 days ago)
80,443
Brute-Force
SSH