π«π·
masterguru
2026-08-27 02:59:10
(30 minutes ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
π«π·
dynamix
2026-08-27 02:58:30
(31 minutes ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 02:24:33
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.237.120.56 (56.120.237.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.120.56 (56.120.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 22:24:28.497562 2026] [security2:error] [pid 1512506:tid 1512521] [client 35.237.120.56:54132] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pwihatah.plumeraproductions.com"] [uri "/public/.git/config"] [unique_id "ao-f3G4o2jv0_JwE14ABAwAAAcs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 01:49:15
(1 hour ago)
[27/Aug/2026:11:49:14 +1000] "GET /public/.git/config HTTP/1.1" 301 299 "crusader-worker/1.0"
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 01:45:14
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.237.120.56 (56.120.237.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.120.56 (56.120.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 21:45:07.978001 2026] [security2:error] [pid 3612:tid 3612] [client 35.237.120.56:54414] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barryschiller.com"] [uri "/backend/.git/config"] [unique_id "ao-Wo_MgiEby_3oZWgUfagAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 01:34:26
(1 hour ago)
Banned by Fail2Ban on server
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 00:59:45
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.237.120.56 (56.120.237.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.120.56 (56.120.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 20:59:40.320681 2026] [security2:error] [pid 17388:tid 17388] [client 35.237.120.56:36606] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "towida.com"] [uri "/www/.git/config"] [unique_id "ao-L_AN7Yr0MXSeEPuluxgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πΎ
lns.bz
2026-08-27 00:46:13
(2 hours ago)
Too many 404 requests [BY]
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 23:51:51
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.237.120.56 (56.120.237.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.120.56 (56.120.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 19:51:44.495826 2026] [security2:error] [pid 29312:tid 29312] [client 35.237.120.56:35974] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hker.hongkonger.org"] [uri "/www/.git/config"] [unique_id "ao98EIBETSJOFAp-4XMbvwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
e.fierstra
2026-08-26 23:47:30
(3 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
π©πͺ
Vegascosmetics
2026-08-26 22:42:26
(4 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after PHP/CMS/webshell exploit probe (possi ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after PHP/CMS/webshell exploit probe (possible exploited host). Evidence: AttackPattern: /wordpress/ (Match: /wordpress/)
show less
Hacking
Exploited Host
Web App Attack
π³π±
homeshowdomain.nl
2026-08-26 21:59:27
(5 hours ago)
Auto-ban: >3000 req/min op 2026-08-26
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-08-26 21:21:45
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.237.120.56 (56.120.237.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.120.56 (56.120.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 17:21:39.343776 2026] [security2:error] [pid 11476:tid 11476] [client 35.237.120.56:46666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vgforever.com"] [uri "/app/.git/config"] [unique_id "ao9Y4x1PSt8VjyYEpYRUPQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack