๐ซ๐ท
masterguru
2026-09-16 06:32:23
(21 hours ago)
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .back/ .b ...
show more
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .back/ .backup/ .bak/ .bck/ .bk/ .bkp/ .bat/ .cdx/ .cer/ .cfg/ .cmd/ .cnf/ .com/ .compositefont/ .config/ .conf/ .copy/ .crt/ .cs/ .csproj/ .csr/ .dat/ .db/ .dbf/ .dist/ .dll/ .dos/ .dpkg-dist/ .drv/ .gadget/ .hta/ .htr/ .htw/ .ida/ .idc/ .idq/ .inc/ .inf/ .ini/ .jks/ .jse/ .key/ .licx/ .lnk/ .log/ .mdb/ .msc/ .ocx/ .old/ .pass/ .pdb/ .pfx/ .pif/ .pem/ .pol/ .prf/ .printer/ .pwd/ .rdb/ .rdp/ .reg/ .resources/ .resx/ .sav/ .save/ .scr/ .sct/ .sh/ .shs/ .sql/ .sqlite/ .sqlite3/ .swap/ .swo/ .swp/ .sys/ .temp/ .tfstate/ .tlb/ .tmp/ .vb/ .vbe/ .vbs/ .vbproj/ .vsdisco/ .vxd/ .webinfo/ .ws/ .wsc/ .wsf/ .wsh/ .xsd/ .xsx/" at TX:extension. (920440-193)
show less
Hacking
๐ณ๐ฑ
ConsulHosting
2026-09-16 06:04:21
(22 hours ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-09-16 05:14:21
(23 hours ago)
346 attacks on config grabbing URLs (type 2), env grabbing URLs, directory traversals, VC URLs, env ...
show more
346 attacks on config grabbing URLs (type 2), env grabbing URLs, directory traversals, VC URLs, env grabbing URLs (type 2), PHP URLs, password/key grabbing URLs:
GET /src/amplifyconfiguration.json HTTP/1.1
GET /.env.prod.bak HTTP/1.1
GET /..%2f..%2f.env HTTP/1.1
GET /.git/config HTTP/1.1
GET /@fs/proc/self/cmdline?raw?? HTTP/1.1
POST /icecoder/lib/terminal-xhr.php HTTP/1.1
GET /__vite_rsc_findSourceMapURL?filename=file:///root/.aws/credentials&environmentName=rsc HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 04:05:40
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 35.254.119.96 (96.119.254.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.254.119.96 (96.119.254.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 00:05:33.295829 2026] [security2:error] [pid 6199:tid 6199] [client 35.254.119.96:40932] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||supportconvalelementary.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "supportconvalelementary.com"] [uri "/z9x8c7v6b5-debug-trigger-supportconvalelementary.com"] [unique_id "aqoVjdQRHBe3f29XJzkSngAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
A.i.D.A.N.N
2026-09-16 02:33:01
(1 day ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web vulnerability scanning detected
Web App Attack
Anonymous
2026-09-16 02:31:44
(1 day ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐จ๐ฆ
Dunham Support
2026-09-16 02:19:17
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 35.254.119.96 (US/United States/96.119. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.254.119.96 (US/United States/96.119.254.35.bc.googleusercontent.com)
show less
SQL Injection
๐ณ๐ฑ
Site.eu
2026-09-16 02:04:45
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
Mundo Bueno
2026-09-16 01:49:28
(1 day ago)
[ISILIA Protection v2.1] Tentative d'accรจs: /secrets.env | Pays: US | UA: Mozilla/5.0 AppleWebKit/53 ...
show more
[ISILIA Protection v2.1] Tentative d'accรจs: /secrets.env | Pays: US | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Perplexity-User/1.0; +https://perplex
show less
Hacking
Web App Attack
๐ซ๐ท
masterguru
2026-09-16 00:31:04
(1 day ago)
BAD BOT - Detected and Blocked.. Matched phrase "baidu" at REQUEST_HEADERS:User-Agent. (1100000-196)
Bad Web Bot
๐ฉ๐ช
LRob
2026-09-16 00:21:25
(1 day ago)
Declared crawler ignoring robots.txt and the refusals it is given | ua: Mozilla/5.0 AppleWebKit/537. ...
show more
Declared crawler ignoring robots.txt and the refusals it is given | ua: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] ) | path: /.github/.env (+3 more) | 2026-09-16 00:21 UTC
show less
Bad Web Bot
๐ฎ๐ณ
evicky2002
2026-09-16 00:02:04
(1 day ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ซ๐ท
Stylottica
2026-09-15 23:18:23
(1 day ago)
PrestaShop Security Module: suspicious probe path detected (/.env)
Web App Attack
Anonymous
2026-09-15 23:13:07
(1 day ago)
35.254.119.96 - - [16/Sep/2026:01:12:48 +0200] "GET /secrets.yml HTTP/2.0" 403 294 "https://stylian- ...
show more
35.254.119.96 - - [16/Sep/2026:01:12:48 +0200] "GET /secrets.yml HTTP/2.0" 403 294 "https://stylian-khw.de/secrets.yml" "Mozilla/5.0 (compatible; Bytespider; AppleWebKit/537.36"
show less
Web Spam
Blog Spam
Brute-Force
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-15 22:04:54
(1 day ago)
cloudlinux2 fail2ban: 2026-09-15 23:48:48,550 fail2ban.filter [1908]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-15 23:48:48,550 fail2ban.filter [1908]: INFO [plesk-wordpress] Found 104.234.53.14 - 2026-09-15 23:48:47cloudlinux2 fail2ban: 2026-09-15 23:48:48,566 fail2ban.filter [1908]: INFO [plesk-wordpress] Found 45.8.19.251 - 2026-09-15 23:48:47cloudlinux2 fail2ban: 2026-09-15 23:48:57,341 fail2ban.actions [1908]: NOTICE [plesk-modsecurity] Unban 34.71.136.180cloudlinux2 fail2ban: 2026-09-15 23:49:24,380 fail2ban.filter [1908]: INFO [plesk-modsecurity] Found 35.254.119.96 - 2026-09-15 23:49:24cloudlinux2 fail2ban: 2026-09-15 23:49:24,336 fail2ban.filter [1908]: INFO [plesk-modsecurity] Found 35.254.119.96 - 2026-09-15 23:49:24cloudlinux2 fail2ban: 2026-09-15 23:49:24,318 fail2ban.filter [1908]: INFO [plesk-modsecurity] Found 35.254.119.96 - 2026-09-15 23:49:23cloudlinux2 fail2ban: 2026-09-15 23:49:24,300 fail2ban.filter [1908]: INFO [plesk-modsecurity] Found 35.254.119.96 - 2026-09-15 23:49:23cloudlinux2 fail2ban: 2
show less
Web App Attack