🇫🇷
Jager
2026-09-05 11:44:51
(2 hours ago)
Blocked by CrowdSec on homelab for scenario: crowdsecurity/http-sensitive-files
Brute-Force
Port Scan
Web App Attack
🇫🇷
dynamix
2026-09-05 02:32:47
(11 hours ago)
Multiple WAF Violations
Web App Attack
🇩🇪
Philister11
2026-09-05 01:52:13
(12 hours ago)
CrowdSec: crowdsecurity/http-sensitive-files (US/AS396982)
Web App Attack
Hacking
🇳🇱
homeshowdomain.nl
2026-09-04 21:59:20
(16 hours ago)
Auto-ban: >3000 req/min op 2026-09-04
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-04 21:23:22
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.231.59.239 (239.59.231.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.231.59.239 (239.59.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:23:16.881239 2026] [security2:error] [pid 17470:tid 17494] [client 35.231.59.239:36498] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.lagifthouse.com"] [uri "/htdocs/.git/config"] [unique_id "aps2xMzC9LbyJmhgV4C3pAAAAM0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 19:49:10
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.231.59.239 (239.59.231.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.231.59.239 (239.59.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 15:49:02.906472 2026] [security2:error] [pid 3400897:tid 3400932] [client 35.231.59.239:53574] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "visionforandfromchildren.org"] [uri "/.git/config"] [unique_id "apsgrlKG-E1PxwvV9Q1zXAAAAMc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 19:32:29
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.231.59.239 (239.59.231.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.231.59.239 (239.59.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 15:32:25.143866 2026] [security2:error] [pid 5936:tid 5936] [client 35.231.59.239:44440] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ispeakmusic.com"] [uri "/public/.git/config"] [unique_id "apscyRGS9kWsD6MavfaZ7QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇿
Antinson
2026-09-04 19:27:21
(18 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
🇩🇪
todix
2026-09-04 18:16:45
(20 hours ago)
WebAttack or semilar from 35.231.59.239
Web App Attack
Anonymous
2026-09-04 17:20:45
(21 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇳🇱
Savvii
2026-09-04 16:07:43
(22 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-04 12:20:47
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 10:17:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.231.59.239 (239.59.231.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.231.59.239 (239.59.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 06:17:18.312540 2026] [security2:error] [pid 19088:tid 19088] [client 35.231.59.239:48144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "astariamedia.com"] [uri "/.git/config"] [unique_id "apqarqif0lIznrn-WI-xJgAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
loic
2026-09-04 09:26:08
(1 day ago)
Fail2ban: 10 failed attempts on npm-401 (nginxproxymanager)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 06:30:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.231.59.239 (239.59.231.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.231.59.239 (239.59.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 02:30:12.714808 2026] [security2:error] [pid 15512:tid 15512] [client 35.231.59.239:34440] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coast-consult.com"] [uri "/api/.git/config"] [unique_id "appldAxWtl38T8JiVjBFWwAAAEk"]
show less
Brute-Force
Bad Web Bot
Web App Attack