๐ง๐พ
lns.bz
2026-08-28 00:20:54
(10 hours ago)
Too many 404 requests [BY]
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-27 22:02:48
(13 hours ago)
Auto-ban: >3000 req/min op 2026-08-27
Web App Attack
SSH
Hacking
๐ช๐ธ
tutaim.com
2026-08-27 22:00:09
(13 hours ago)
โ [28/08/26] This IP has been detected performing multiple attacks on websites (36 attempts blocked) ...
show more
โ [28/08/26] This IP has been detected performing multiple attacks on websites (36 attempts blocked). Potential malicious activity.
show less
Brute-Force
SSH
Web App Attack
FTP Brute-Force
๐ฎ๐ช
AutosOnShow
2026-08-27 19:41:04
(15 hours ago)
blocked for webapp attack | path requested: /.git/config | seen at 2026-08-27 19:40:45.552 |
Web App Attack
Anonymous
2026-08-27 18:16:54
(16 hours ago)
[Thu Aug 27 20:16:54.116178 2026] [authz_core:error] [pid 658:tid 715] [client 35.254.64.246:40696] ...
show more
[Thu Aug 27 20:16:54.116178 2026] [authz_core:error] [pid 658:tid 715] [client 35.254.64.246:40696] AH01630: client denied by server configuration: /var/www/html/htdocs
[Thu Aug 27 20:16:54.119183 2026] [authz_core:error] [pid 659:tid 684] [client 35.254.64.246:40680] AH01630: client denied by server configuration: /var/www/html/backend
[Thu Aug 27 20:16:54.119599 2026] [authz_core:error] [pid 659:tid 684] [client 35.254.64.246:40722] AH01630: client denied by server configuration: /var/www/html/api
[Thu Aug 27 20:16:54.124869 2026] [authz_core:error] [pid 658:tid 711] [client 35.254.64.246:40732] AH01630: client denied by server configuration: /var/www/html/.git
[Thu Aug 27 20:16:54.126883 2026] [authz_core:error] [pid 659:tid 686] [client 35.254.64.246:40710] AH01630: client denied by server configuration: /var/www/html/site
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:26:17
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.254.64.246 (246.64.254.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.254.64.246 (246.64.254.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:26:10.534365 2026] [security2:error] [pid 32120:tid 32120] [client 35.254.64.246:56266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aktkaro.com"] [uri "/.git/config"] [unique_id "apBlIlUhtzqu2YFg3ehVfAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-27 15:38:34
(19 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ช๐ธ
tutaim.com
2026-08-27 14:00:06
(21 hours ago)
โ [27/08/26] This IP has been detected performing multiple attacks on websites (36 attempts blocked) ...
show more
โ [27/08/26] This IP has been detected performing multiple attacks on websites (36 attempts blocked). Potential malicious activity.
show less
Brute-Force
SSH
Web App Attack
FTP Brute-Force
๐ฉ๐ช
0x44
2026-08-27 13:47:12
(21 hours ago)
TCP SYN Discovery - Flooding
DDoS Attack
๐ฉ๐ช
LRob
2026-08-27 13:03:28
(22 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /public/.git/config (+11 more) | 2026-08-27 13:03 UTC
show less
Hacking
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-27 12:20:05
(22 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐ฉ๐ช
grassau.com
2026-08-27 12:07:21
(23 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.254.64.246 (US/United States/Iowa/Co ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.254.64.246 (US/United States/Iowa/Council Bluffs/246.64.254.35.bc.googleusercontent.com)
show less
SQL Injection
๐ซ๐ฎ
as211431.net
2026-08-27 12:03:58
(23 hours ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /app/.git/config
UA: crusader-worker/1.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ณ๐ฑ
e.fierstra
2026-08-27 11:18:17
(23 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack