๐ง๐ท
Peregrine
2026-06-04 03:10:24
(12 hours ago)
Fail2Ban Jail: tomcat-honeypot | Evidence: - 40.84.216.82 - - [02/Jun/2026:06:50:11 -0300] "GET /.gi ...
show more
Fail2Ban Jail: tomcat-honeypot | Evidence: - 40.84.216.82 - - [02/Jun/2026:06:50:11 -0300] "GET /.git/HEAD HTTP/1.1" 404 414
show less
Bad Web Bot
๐ง๐ท
Peregrine
2026-06-02 09:50:19
(2 days ago)
Fail2Ban Jail: tomcat-honeypot | Evidence: - 40.84.216.82 - - [02/Jun/2026:06:50:11 -0300] "GET /.gi ...
show more
Fail2Ban Jail: tomcat-honeypot | Evidence: - 40.84.216.82 - - [02/Jun/2026:06:50:11 -0300] "GET /.git/HEAD HTTP/1.1" 404 414
show less
Bad Web Bot
๐ฏ๐ต
VXG-NET
2026-06-02 08:14:52
(2 days ago)
port=80, indicator_type=info-leak
Hacking
Anonymous
2026-06-02 08:07:33
(2 days ago)
[Tue Jun 02 10:07:02.982367 2026] [access_compat:error] [pid 2740685:tid 128012907448000] [client 40 ...
show more
[Tue Jun 02 10:07:02.982367 2026] [access_compat:error] [pid 2740685:tid 128012907448000] [client 40.84.216.82:32974] AH01797: client denied by server configuration: /var/www/html/.git
[Tue Jun 02 10:07:05.102730 2026] [access_compat:error] [pid 2739674:tid 128013033277120] [client 40.84.216.82:32992] AH01797: client denied by server configuration: /var/www/html/.git
[Tue Jun 02 10:07:08.385684 2026] [access_compat:error] [pid 2740685:tid 128013056345792] [client 40.84.216.82:33093] AH01797: client denied by server configuration: /var/www/html/.env.local
[Tue Jun 02 10:07:10.062459 2026] [access_compat:error] [pid 2740685:tid 128012706121408] [client 40.84.216.82:32976] AH01797: client denied by server configuration: /var/www/html/.env.production
[Tue Jun 02 10:07:11.424855 2026] [access_compat:error] [pid 2739675:tid 128013033277120] [client 40.84.216.82:33007] AH01797: client denied by server configuration: /var/www/html/.env.backup
[Tue Jun 02 10:07:15.460821 2026] [access_compat:er
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
pm33
2026-06-02 07:42:03
(2 days ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
๐จ๐ฆ
Blinker73
2026-06-02 07:23:55
(2 days ago)
2026-06-02T03:23 kernel: OUT= SRC=40.84.216.82 LEN=60 TOS=0x00 PREC=0x00 TTL=43 ID=20524 DF PR ...
show more
2026-06-02T03:23 kernel: OUT= SRC=40.84.216.82 LEN=60 TOS=0x00 PREC=0x00 TTL=43 ID=20524 DF PROTO=TCP SPT=33638 DPT=2082 WINDOW=64240 RES=0x00 SYN URGP=0
2026-06-02T03:23 kernel: OUT= SRC=40.84.216.82 LEN=60 TOS=0x00 PREC=0x00 TTL=43 ID=91 DF PROTO=TCP SPT=32928 DPT=2087 WINDOW=64240 RES=0x00 SYN URGP=0
2026-06-02T03:23 kernel: OUT= SRC=40.84.216.82 LEN=60 TOS=0x00 PREC=0x00 TTL=41 ID=35976 DF PROTO=TCP SPT=32275 DPT=8443 WINDOW=64240 RES=0x00 SYN URGP=
show less
Port Scan
Anonymous
2026-06-02 07:19:52
(2 days ago)
PAD: ModSec_Scanner!,ModSec_Critical,Bad_Web_Bot_D detected
Hacking
๐บ๐ธ
ISPLtd
2026-06-02 07:17:53
(2 days ago)
Jun 2 04:17:41 40.84.216.82 TCP SPT=33599 DPT=2087 SYN
Jun 2 04:17:41 40.84.216.82 TCP SPT=33555 D ...
show more
Jun 2 04:17:41 40.84.216.82 TCP SPT=33599 DPT=2087 SYN
Jun 2 04:17:41 40.84.216.82 TCP SPT=33555 DPT=2083 SYN
Jun 2 04:17:41 40.84.216.82 TCP SPT=33096 DPT=8443 SYN
...
show less
Port Scan
๐ณ๐ฑ
StopAbuse
2026-06-02 07:08:02
(2 days ago)
tcp/2083 tcp/443 tcp/8080 tcp/8443
Port Scan
Anonymous
2026-06-02 07:06:06
(2 days ago)
Trying to access config files
Web App Attack
๐บ๐ธ
gu-alvareza
2026-06-02 07:05:43
(2 days ago)
Spring.Boot.Actuator.Unauthorized.Access
Brute-Force
๐ซ๐ท
guillaume illien
2026-06-02 06:29:08
(2 days ago)
40.84.216.82 - - [02/Jun/2026:06:28:58 +0000] "GET /.git/config HTTP/1.1" 301 178 "-" "Mozilla/5.0 ( ...
show more
40.84.216.82 - - [02/Jun/2026:06:28:58 +0000] "GET /.git/config HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
40.84.216.82 - - [02/Jun/2026:06:29:00 +0000] "GET /.env HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 Edg/124.0.0.0"
40.84.216.82 - - [02/Jun/2026:06:29:01 +0000] "GET /.env.local HTTP/1.1" 301 178 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
40.84.216.82 - - [02/Jun/2026:06:29:04 +0000] "GET /.env.backup HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_4_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.4 Safari/605.1.15"
40.84.216.82 - - [02/Jun/2026:06:29:05 +0000] "GET /.env.save HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36"
40.84.216.82 - - [02/Jun
...
show less
Hacking
Brute-Force
Web App Attack
SSH
๐ธ๐ฌ
drewf.ink
2026-06-02 05:52:34
(2 days ago)
[05:52] Port scanning. Port(s) scanned: TCP/8080, TCP/2083, TCP/8443
Port Scan
๐น๐ท
Threat.live
2026-06-02 05:40:05
(2 days ago)
Suspicious Connection Attempts
Brute-Force
๐ง๐ท
SOC PR
2026-06-02 05:02:38
(2 days ago)
IPS: Sensitive Configuration File Disclosure.
Hacking