๐ง๐ช
boxed-it
2026-06-10 20:14:52
(9 hours ago)
GET /.git/config (Tarpitted for 1d15h8m28s, wasted 8.06MB)
Web App Attack
๐จ๐ญ
TheCoon
2026-06-10 01:15:01
(1 day ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 21:59:43
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐ซ๐ฎ
inlink.ltd
2026-06-09 15:58:43
(1 day ago)
dot file probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 15:53:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 11:53:08.418893 2026] [security2:error] [pid 4503:tid 4503] [client 35.241.165.122:51750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cyprus-boat-registration.com"] [uri "/.git/config"] [unique_id "aig25LwFWQnd88u0iEpDEgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ne1for23
2026-06-09 15:09:18
(1 day ago)
Attempting to probe for sensitive information accidently exposed via git config.
35.241.165.122 - - ...
show more
Attempting to probe for sensitive information accidently exposed via git config.
35.241.165.122 - - [09/Jun/2026:15:09:18 +0000] "GET /.git/config HTTP/1.1" 403 555 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36"
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 14:58:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 10:58:36.276757 2026] [security2:error] [pid 29902:tid 29902] [client 35.241.165.122:43922] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "beckerbrokerage.net"] [uri "/.git/config"] [unique_id "aigqHAP49MaJKJ956sYWfwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 14:15:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 10:15:52.029356 2026] [security2:error] [pid 6299:tid 6299] [client 35.241.165.122:49888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.vintex.hk"] [uri "/.git/config"] [unique_id "aiggGOW29S2dDsvGlR88OgAAADo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 13:29:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:29:02.040859 2026] [security2:error] [pid 31698:tid 31698] [client 35.241.165.122:58696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.barkoskieelectric.com.bacpool.com"] [uri "/.git/config"] [unique_id "aigVHvRW7zZxLK4e9p5AmAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 11:38:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:38:44.446644 2026] [security2:error] [pid 4438:tid 4438] [client 35.241.165.122:37142] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "healingworksmassage.studio"] [uri "/.git/config"] [unique_id "aif7ROTAgRA0HVp9w6DxJgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Axel
2026-06-09 11:16:33
(1 day ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐จ๐ญ
4server
2026-06-09 07:13:23
(1 day ago)
[TueJun0909:13:16.5731842026][security2:error][pid4130441:tid4130872][client35.241.165.122:0]ModSecu ...
show more
[TueJun0909:13:16.5731842026][security2:error][pid4130441:tid4130872][client35.241.165.122:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"facil-services.ch\"][uri\"/.git/config\"][unique_id\"aie9DMbYuNbZ8WkPRpadoQAAAJc\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:04:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:04:28.925477 2026] [security2:error] [pid 4521:tid 4521] [client 35.241.165.122:52952] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.aares2026.net"] [uri "/.git/config"] [unique_id "aie6_Bvp9WHsV8l2r-TeLAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 06:35:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:35:30.708671 2026] [security2:error] [pid 16553:tid 16553] [client 35.241.165.122:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.wiszen.org"] [uri "/.git/config"] [unique_id "aie0MlWz-DJTzm9HBmiiCAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 05:05:32
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.165.122 (122.165.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:05:25.770785 2026] [security2:error] [pid 1100:tid 1100] [client 35.241.165.122:34640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "freemanfoundationcle.org"] [uri "/.git/config"] [unique_id "aiefFdOIBPNDcLZ3QHQzigAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack