๐ฉ๐ช
raph
2026-07-01 10:16:41
(4 weeks ago)
[SQL INJECTION] f2b match %{+Q}r for ^.*haproxy\[[0-9]+\]: <HOST>:.* (GET |POST ).*\?.*(%20AND%20|%2 ...
show more
[SQL INJECTION] f2b match %{+Q}r for ^.*haproxy\[[0-9]+\]: <HOST>:.* (GET |POST ).*\?.*(%20AND%20|%20and%20|%20OR%20|%20or%20).* HTTP/1.1$
show less
SQL Injection
๐ฎ๐น
mgarofano80
2026-07-01 10:11:56
(4 weeks ago)
Brute-Force
Web App Attack
๐ซ๐ฎ
tjs
2026-06-29 10:25:00
(1 month ago)
web attack, SQL injection attempt
Hacking
SQL Injection
Web App Attack
๐ฉ๐ช
raph
2026-06-26 13:21:33
(1 month ago)
[SQL INJECTION] f2b match %{+Q}r for ^.*haproxy\[[0-9]+\]: <HOST>:.* (GET |POST ).*\?.*(%20AND%20|%2 ...
show more
[SQL INJECTION] f2b match %{+Q}r for ^.*haproxy\[[0-9]+\]: <HOST>:.* (GET |POST ).*\?.*(%20AND%20|%20and%20|%20OR%20|%20or%20).* HTTP/1.1$
show less
SQL Injection
Anonymous
2026-06-25 08:30:04
(1 month ago)
| [Trusted/United States] Aggressive IP 40.76.121.5 (~3000 hits). Type: DoS Defender- Web server 400 ...
show more
| [Trusted/United States] Aggressive IP 40.76.121.5 (~3000 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐ฆ๐ท
whost
2026-06-24 00:16:00
(1 month ago)
bfa - reported by silicomnetwork.com
Brute-Force
๐บ๐ธ
Starburst SysOp Team
2026-06-23 12:57:30
(1 month ago)
Malware host (X-Forwarded-For) detected by rbl.malware.expert. RBL lookup of 5.121.76.40.rbl.malware ...
show more
Malware host (X-Forwarded-For) detected by rbl.malware.expert. RBL lookup of 5.121.76.40.rbl.malware.expert succeeded at REQUEST_HEADERS:x-forwarded-for. (1001000-mnz6-3)
show less
Hacking
๐ฎ๐ฑ
spd.co.il
2026-06-22 09:02:29
(1 month ago)
Web application attack detected
Hacking
Web App Attack
๐ฎ๐ช
RoboSOC
2026-06-20 12:13:20
(1 month ago)
HTTP Cross Site Scripting Vulnerability , PTR: PTR record not found
Web App Attack
๐จ๐ญ
Kepler-1649c
2026-06-20 10:05:11
(1 month ago)
Detected Attack: Web.Server.Password.File.Access
Hacking
๐ฎ๐น
mgarofano80
2026-06-20 09:17:39
(1 month ago)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-20 05:36:44
(1 month ago)
(mod_security) mod_security (id:212620) triggered by 40.76.121.5 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:212620) triggered by 40.76.121.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 20 01:36:39.404504 2026] [security2:error] [pid 18403:tid 18403] [client 40.76.121.5:64007] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||www.the.dental|F|2"] [data "Matched Data: <script found within REQUEST_URI: /index.php?route=\\x22><script>alert(string.fromcharcode(88,83,83))</script>&language=en-gb"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "www.the.dental"] [uri "/index.php"] [unique_id "ajYm57wR_ach3B3nRtYGrQAAAAs"], referer: https://www.the.dental/index.php?route="><script >alert(String.fromCharCode(88,83,83))</script>&language=en-gb
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 07:08:41
(1 month ago)
(mod_security) mod_security (id:212620) triggered by 40.76.121.5 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:212620) triggered by 40.76.121.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 03:08:36.422989 2026] [security2:error] [pid 28303:tid 28303] [client 40.76.121.5:53878] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||desertedge.band|F|2"] [data "Matched Data: <script found within REQUEST_URI: /g12privacy.php?fromwhere=\\x22><script>alert(string.fromcharcode(88,83,83))</script>&fromwhat=homepage"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "desertedge.band"] [uri "/g12privacy.php"] [unique_id "ajTq9JGXPzwkPvNcCfHjIwAAAAs"], referer: https://desertedge.band/g12privacy.php?fromwhere="><script >alert(String.fromCharCode(88,83,83))</script>&fromwhat=Home Page
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-06-18 11:27:00
(1 month ago)
block ruleset SQL-Injections: typical patterns B00691C2B3660FF27FABC58C19A75B50EDEC4A5E
SQL Injection