๐ซ๐ท
IRISIO
2026-08-24 07:23:57
(2 hours ago)
scans/SQL injection/spam posts : 56 queries
Web App Attack
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-08-22 08:10:26
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.254.188.48 (48.188.254.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.254.188.48 (48.188.254.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 04:10:20.704099 2026] [security2:error] [pid 4524:tid 4524] [client 35.254.188.48:54482] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.test.miroddi.com"] [uri "/.git/HEAD"] [unique_id "aolZbCWmcDO_pUcHOQ-q2QAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-22 06:48:41
(2 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: api.sweetpuddingtrap.online | URI: /.git/HEAD | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
Anonymous
2026-08-22 05:46:20
(2 days ago)
Web application attack detected.
Web App Attack
๐ฉ๐ช
nyt
2026-08-22 04:59:04
(2 days ago)
Sensitive File Probe
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-08-22 04:43:43
(2 days ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-08-22 04:22:28
(2 days ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.git (Match: /.git)
show less
Hacking
Brute-Force
Web App Attack
Anonymous
2026-08-22 03:55:02
(2 days ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
IndigoRidge
2026-08-22 03:47:52
(2 days ago)
35.254.188.48 - - [21/Aug/2026:23:47:50 -0400] "GET /.git/HEAD HTTP/1.0" 404 5745 "-" "Mozilla/5.0 ( ...
show more
35.254.188.48 - - [21/Aug/2026:23:47:50 -0400] "GET /.git/HEAD HTTP/1.0" 404 5745 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
35.254.188.48 - - [21/Aug/2026:23:47:51 -0400] "GET /.git/HEAD HTTP/1.0" 404 5745 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
35.254.188.48 - - [21/Aug/2026:23:47:51 -0400] "GET /.svn/wc.db HTTP/1.0" 404 5745 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
35.254.188.48 - - [21/Aug/2026:23:47:51 -0400] "GET /.svn/wc.db HTTP/1.0" 404 5745 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
35.254.188.48 - - [21/Aug/2026:23:47:52 -0400] "GET /.hg/store/fncache HTTP/1.0" 404 5745 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safar
...
show less
Web App Attack
๐ฎ๐ฉ
Burayot
2026-08-22 02:59:42
(2 days ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.254.188.48 (US/United States/48. ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.254.188.48 (US/United States/48.188.254.35.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐ฉ๐ช
SCHAPPY
2026-08-22 02:45:03
(2 days ago)
Brute-force attack to identify web exploits
Brute-Force
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-22 02:39:21
(2 days ago)
[22/Aug/2026:05:39:20 +0300] -- 35.254.188.48 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[22/Aug/2026:05:39:20 +0300] -- 35.254.188.48 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/HEAD HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-22 02:17:38
(2 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: portal.definitelynotahoneypot.xyz | URI: /.git/HEAD | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-22 01:58:05
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 01:40:14
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.254.188.48 (48.188.254.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.254.188.48 (48.188.254.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 21:40:06.275490 2026] [security2:error] [pid 12025:tid 12034] [client 35.254.188.48:52574] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gafm.org"] [uri "/.git/HEAD"] [unique_id "aoj99h2qVclR4b2KLz2_rwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack