๐ฌ๐ง
NotCool
2026-07-25 03:14:21
(15 hours ago)
[7200] (GITPROBE,ROBOTSIGNORE3,DOTENVPROBE) Login failure/trigger from 44.251.167.102 (US/United Sta ...
show more
[7200] (GITPROBE,ROBOTSIGNORE3,DOTENVPROBE) Login failure/trigger from 44.251.167.102 (US/United States/ec2-44-251-167-102.us-west-2.compute.amazonaws.com): 50 in the last 3600 secs
show less
Brute-Force
๐ณ๐ฑ
ipoac.nl
2026-07-25 03:10:03
(15 hours ago)
-:443 44.251.167.102 - - [25/Jul/2026:05:10:02 +0200] - "GET /.git/config HTTP/1.1" 404 1967 "-" "Mo ...
show more
-:443 44.251.167.102 - - [25/Jul/2026:05:10:02 +0200] - "GET /.git/config HTTP/1.1" 404 1967 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Bad Web Bot
๐ฟ๐ฆ
conure
2026-07-25 01:25:59
(17 hours ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
๐ฑ๐ป
garmtech.com
2026-07-25 01:00:29
(17 hours ago)
IM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js ...
show more
IM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js < 15.0.5/16.0.7 (CVE-2025-55182, CVE-2025-66478)
show less
Hacking
๐ฉ๐ช
ger-stg-sifi1
2026-07-25 00:35:11
(18 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฉ๐ช
LRob
2026-07-24 23:33:20
(19 hours ago)
CrowdSec: crowdsecurity/http-sensitive-files | req: /.git/config | 5 distinct paths | UA: Mozilla/5. ...
show more
CrowdSec: crowdsecurity/http-sensitive-files | req: /.git/config | 5 distinct paths | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-07-24 22:00:19
(20 hours ago)
Auto-ban: >3000 req/min op 2026-07-24
Web App Attack
SSH
Hacking
๐ซ๐ท
dynamix
2026-07-24 14:58:13
(1 day ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 14:09:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 44.251.167.102 (ec2-44-251-167-102.us-west-2.co ...
show more
(mod_security) mod_security (id:210492) triggered by 44.251.167.102 (ec2-44-251-167-102.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 10:09:43.179606 2026] [security2:error] [pid 1385256:tid 1385256] [client 44.251.167.102:54532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.catnameslist.bodybuildbid.com"] [uri "/.git/config"] [unique_id "amNyJ7TNt0nYsWw-5MqLhQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 13:51:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 44.251.167.102 (ec2-44-251-167-102.us-west-2.co ...
show more
(mod_security) mod_security (id:210492) triggered by 44.251.167.102 (ec2-44-251-167-102.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 09:51:41.895357 2026] [security2:error] [pid 2746209:tid 2746209] [client 44.251.167.102:41446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.catholicshoppercom.frankpollicino.com"] [uri "/.git/config"] [unique_id "amNt7ZMpHV8ZIIBOJhp3DwAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-07-24 11:15:26
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 11:10:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 44.251.167.102 (ec2-44-251-167-102.us-west-2.co ...
show more
(mod_security) mod_security (id:210492) triggered by 44.251.167.102 (ec2-44-251-167-102.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 07:10:16.528890 2026] [security2:error] [pid 3889332:tid 3889332] [client 44.251.167.102:60818] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cassimandabdallah.williamgilcher.com"] [uri "/.git/config"] [unique_id "amNIGNfSsei64kmLjXUnHgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-07-24 09:47:54
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
Anonymous
2026-07-24 06:36:26
(1 day ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 05:20:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 44.251.167.102 (ec2-44-251-167-102.us-west-2.co ...
show more
(mod_security) mod_security (id:210492) triggered by 44.251.167.102 (ec2-44-251-167-102.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 01:20:16.627543 2026] [security2:error] [pid 32743:tid 32743] [client 44.251.167.102:43368] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cartilla.aguasolar.com"] [uri "/.git/config"] [unique_id "amL2EBqcaciyVvuYtHvVBwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack