π³πΏ
Tripwire
2026-07-26 04:23:02
(17 hours ago)
Scanning for exploits - /.env
Web App Attack
π¬π§
gws-hostmaster
2026-07-25 00:25:58
(1 day ago)
ModSecurity OWASP CRS (Anomaly Score: 50): JavaScript Prototype Pollution;JSON-Based SQL Injection;N ...
show more
ModSecurity OWASP CRS (Anomaly Score: 50): JavaScript Prototype Pollution;JSON-Based SQL Injection;Node.js Injection Attack 1/2;PHP Injection Attack: Variable Access Found;Remote Command Execution: Direct Unix Command Execution;Remote Command Execution: Unix Shell Expression Found;Restricted File Access Attempt;SQL Injection Attack: SQL function name detected;URL file extension is restricted by policy;
show less
Web App Attack
π³π±
Site.eu
2026-07-24 23:26:23
(1 day ago)
Excessive 404/403 errors
Brute-Force
πΊπΈ
TPI-Abuse
2026-07-24 14:16:31
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 44.250.71.57 (ec2-44-250-71-57.us-west-2.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 44.250.71.57 (ec2-44-250-71-57.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 10:16:25.739932 2026] [security2:error] [pid 1118927:tid 1118946] [client 44.250.71.57:51828] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cynosurelandscapers.com"] [uri "/.git/config"] [unique_id "amNzuVvDZpbNNbnMcxsclgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-24 13:26:05
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 44.250.71.57 (ec2-44-250-71-57.us-west-2.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 44.250.71.57 (ec2-44-250-71-57.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 09:25:58.951415 2026] [security2:error] [pid 3806834:tid 3806834] [client 44.250.71.57:52992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cygnetsilks.com"] [uri "/.git/config"] [unique_id "amNn5n-YvDcFV-v9kKwVOQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-24 13:03:59
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 44.250.71.57 (ec2-44-250-71-57.us-west-2.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 44.250.71.57 (ec2-44-250-71-57.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 09:03:52.577425 2026] [security2:error] [pid 222109:tid 222109] [client 44.250.71.57:49256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cydab.com"] [uri "/.git/config"] [unique_id "amNiuJFbkvMMSePljap5tQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
4server
2026-07-24 11:37:23
(2 days ago)
[FriJul2413:37:17.0239882026][security2:error][pid3192157:tid3192342][client44.250.71.57:0]ModSecuri ...
show more
[FriJul2413:37:17.0239882026][security2:error][pid3192157:tid3192342][client44.250.71.57:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\\$\(\?:\\\\\\\\\(\(\?:\\\\\\\\\(.\*\\\\\\\\\)\|.\*\)\\\\\\\\\)\|\\\\\\\\{.\*\\\\\\\\}\)\|[\<\>]\\\\\\\\\(.\*\\\\\\\\\)\)\"atARGS:0.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"396\"][id\"393655\"][rev\"17\"][msg\"Atomicorp.comWAFRules:PossibleRemoteCommandExecution:UnixShellExpressionFound\"][data\"MatchedData:\$\(\(41\*271\)\)foundwithinARGS:0:{then:\$1:__proto__:thenstatus:resolved_modelreason:-1value:{then:\$b1337}_response:{_prefix:varres=process.mainmodule.require\(child_process\).execsync\(echo\$\(\(41\*271\)\)\|base64-w0\).tostring\(\).trim\(\)throwobject.assign\(newerror\(next_redirect\){digest:\`next_redirectpush/login\?a=\${res}307\`}\)_chunks:\$q2_formdata:{get:\$1:constructor:constructor}}}\"][tag\"attack-rce\"][hostname\"cybertelgroup.com\"][uri\"/\"][unique_id\"amNObbOAqfiL7D7-pUHSuQAAAQU\"]
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-24 11:26:24
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 44.250.71.57 (ec2-44-250-71-57.us-west-2.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 44.250.71.57 (ec2-44-250-71-57.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 07:26:20.410844 2026] [security2:error] [pid 1428884:tid 1428884] [client 44.250.71.57:38640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cybersoftware.org"] [uri "/.git/config"] [unique_id "amNL3Ff3nspdsttQ_YOTxgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-24 07:21:31
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 44.250.71.57 (ec2-44-250-71-57.us-west-2.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 44.250.71.57 (ec2-44-250-71-57.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 03:21:25.817836 2026] [security2:error] [pid 2236329:tid 2236329] [client 44.250.71.57:52670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cwvr.org"] [uri "/.git/config"] [unique_id "amMSdSZzb5wX-_anOQBvPQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-24 03:03:34
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 44.250.71.57 (ec2-44-250-71-57.us-west-2.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 44.250.71.57 (ec2-44-250-71-57.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 23:03:28.701031 2026] [security2:error] [pid 3646503:tid 3646503] [client 44.250.71.57:56042] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cuul.co"] [uri "/.git/config"] [unique_id "amLWAMVTALV1E9W_XKaIJgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack