๐บ๐ธ
TPI-Abuse
2026-09-16 03:41:57
(26 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.223.218.145 (145.218.223.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.223.218.145 (145.218.223.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:41:50.721175 2026] [security2:error] [pid 22680:tid 22680] [client 35.223.218.145:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "totalsafe-security.com"] [uri "/.git/config"] [unique_id "aqoP_liaahjWRFa2LCq_5wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ConsulHosting
2026-09-16 03:19:37
(49 minutes ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-16 03:13:03
(55 minutes ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 00:42:10
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.223.218.145 (145.218.223.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.223.218.145 (145.218.223.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 20:42:02.855435 2026] [security2:error] [pid 30780:tid 30780] [client 35.223.218.145:42430] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "topnotchupholstery.com"] [uri "/api/.env/public/.env"] [unique_id "aqnl2oX8iV6fabrSgFjYnQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 00:36:18
(3 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ฎ๐ณ
evicky2002
2026-09-16 00:02:04
(4 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐บ๐ธ
rdpguard.com
2026-09-16 00:00:32
(4 hours ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐ณ๐ฑ
Savvii
2026-09-15 23:33:30
(4 hours ago)
20 attempts against mh-misbehave-ban on choy
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-15 23:14:23
(4 hours ago)
[ti-05al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-05al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.223.218.145 - - [16/Sep/2026:01:14:20 +0200] "GET /.aws/config HTTP/2.0" 404 63787 "-" "Mozilla/5.0 (compatible; YiBot/1.0; +https://01.ai/)"
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
Baking333
2026-09-15 23:02:07
(5 hours ago)
[redacted] 35.223.218.145 - - [15/Sep/2026:22:33:16 +0100] "GET /.[redacted]?.svg?.wasm?init HTTP/1. ...
show more
[redacted] 35.223.218.145 - - [15/Sep/2026:22:33:16 +0100] "GET /.[redacted]?.svg?.wasm?init HTTP/1.1" 302 6768 0/348675 "-" "Mozilla/5.0 (compatible; PanguBot/1.0; +https://[redacted]/)" 443 [redacted] 35.223.218.145 - - [15/Sep/2026:22:33:16 +0100] "GET / HTTP/1.1" 200 7988 0/207986 "https://[redacted]/public../.env" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://[redacted]/)" 443
show less
Bad Web Bot
Web App Attack
๐ฉ๐ฐ
toolbit.online
2026-09-15 22:49:51
(5 hours ago)
Automated web scanning detected by CrowdSec - 6 matching requests, consistent with opportunistic int ...
show more
Automated web scanning detected by CrowdSec - 6 matching requests, consistent with opportunistic internet reconnaissance. Classified as HTTP attack / probing (scenario "LePresidente/http-generic-403-bf", in our own server logs). Behavioural detection, auto-banned at the firewall.
show less
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-15 22:08:01
(6 hours ago)
Fail2Ban - [WAF]ModSecurity OWASP CRS rule violation on nginx-modsecurity ... [ice01,ice02,wa01,wa02 ...
show more
Fail2Ban - [WAF]ModSecurity OWASP CRS rule violation on nginx-modsecurity ... [ice01,ice02,wa01,wa02]
show less
Hacking
SQL Injection
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-15 22:04:43
(6 hours ago)
Auto-ban: >3000 req/min op 2026-09-15
Web App Attack
SSH
Hacking
๐ซ๐ท
Baking333
2026-09-15 21:33:16
(6 hours ago)
[redacted] 35.223.218.145 - - [15/Sep/2026:22:33:13 +0100] "GET /.vite/[redacted] HTTP/1.1" 302 6768 ...
show more
[redacted] 35.223.218.145 - - [15/Sep/2026:22:33:13 +0100] "GET /.vite/[redacted] HTTP/1.1" 302 6768 0/52276 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" 443 [redacted] 35.223.218.145 - - [15/Sep/2026:22:33:13 +0100] "GET /dist/.vite/[redacted] HTTP/1.1" 302 6768 0/55091 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" 443
show less
Bad Web Bot
Web App Attack
๐จ๐ญ
zynex
2026-09-15 21:21:32
(6 hours ago)
URL Probing: /api/.env
Web App Attack