๐ณ๐ฑ
Alt255
2026-09-18 00:20:18
(1 hour ago)
[ti-02ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-02ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.246.102.178 - - [18/Sep/2026:02:20:05 +0200] "GET /.git/config HTTP/1.1" 301 635 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-17 22:52:25
(3 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: www.sweetpuddingtrap.online | URI: /.git/config | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-17 22:03:36
(3 hours ago)
20 attempts against mh-misbehave-ban on frost
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-17 22:02:35
(3 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-16.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
Site.eu
2026-09-17 20:36:39
(5 hours ago)
Excessive 404/403 errors
Brute-Force
๐ฌ๐ง
Apache
2026-09-17 16:45:17
(9 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.246.102.178 (GB/United Kingdom/178.102.246.3 ...
show more
(mod_security) mod_security (id:210730) triggered by 35.246.102.178 (GB/United Kingdom/178.102.246.35.bc.googleusercontent.com): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
Anonymous
2026-09-17 11:49:24
(14 hours ago)
35.246.102.178 - - [17/Sep/2026:13:49:21 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Windows ...
show more
35.246.102.178 - - [17/Sep/2026:13:49:21 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.246.102.178 - - [17/Sep/2026:13:49:21 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.246.102.178 - - [17/Sep/2026:13:49:21 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.246.102.178 - - [17/Sep/2026:13:49:21 +0200] "GET /.git/config HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.246.102.178 - - [17/Sep/2026:13:49:21 +0200] "GET /.env HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.246.102.178 - - [17/Sep/
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-17 11:02:46
(14 hours ago)
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35. ...
show more
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35.246.102.178 - - \[17/Sep/2026:13:02:30 +0200\] "GET /.git/config HTTP/1.1" 301 458 "-" "Mozilla/5.0 \(Windows NT 10.0\; Win64\; x64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-17 09:06:58
(16 hours ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-17 08:25:11
(17 hours ago)
Blocked by firewall on hugin [443/tcp] | Rule: AbuseIPDB | SPT: 37204 | TTL: 64 | LEN: 60 | TOS: 0x0 ...
show more
Blocked by firewall on hugin [443/tcp] | Rule: AbuseIPDB | SPT: 37204 | TTL: 64 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฎ๐ณ
evicky2002
2026-09-17 06:00:05
(19 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ฉ๐ช
hidemail.app
2026-09-17 02:30:15
(23 hours ago)
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto ...
show more
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto-banned by fail2ban.
show less
Web App Attack
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-09-16 22:00:09
(1 day ago)
Auto-ban: >3000 req/min op 2026-09-16
Web App Attack
SSH
Hacking
๐ฎ๐น
www.tana.it
2026-09-16 15:20:40
(1 day ago)
PHP scan
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 15:06:48
(1 day ago)
Excessive 404/403 errors
Brute-Force