๐น๐ท
neron
2026-07-28 20:19:38
(3 days ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-07-28 12:54:33
(4 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-23 00:43:10
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 20:43:02.416922 2026] [security2:error] [pid 13714:tid 13714] [client 45.130.203.141:51349] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.caremedicalbillinginc.com"] [uri "/.env.production"] [unique_id "amFjlqRBCBsRFuZ6P9IpOwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure
2026-07-14 22:43:41
(2 weeks ago)
csagent: score 18.8: secrets grab x2; 2 domain(s) in 22s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-13 08:41:50
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 13 04:41:42.437984 2026] [security2:error] [pid 11514:tid 11514] [client 45.130.203.141:46305] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.myclub.oxfordgliding.com"] [uri "/.git/HEAD"] [unique_id "alSkxtQ74EEsPVOIUaORowAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-13 07:36:46
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 13 03:36:42.369479 2026] [security2:error] [pid 15454:tid 15454] [client 45.130.203.141:28711] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.softwarezz.net"] [uri "/.git/HEAD"] [unique_id "alSViilRZ-k8rII4mUoOuQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-13 05:02:57
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 13 01:02:54.614875 2026] [security2:error] [pid 8758:tid 8758] [client 45.130.203.141:64923] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "archivetest.jeremyscraig.com"] [uri "/.git/HEAD"] [unique_id "alRxft_YzyWMGLYoYEExMwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-13 02:54:22
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 12 22:54:16.072373 2026] [security2:error] [pid 19809:tid 19809] [client 45.130.203.141:26777] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "prot.gabosoftware.com"] [uri "/.git/HEAD"] [unique_id "alRTWDhB7CjAKtmqvVr0AgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐น
Renรฉ Hickersberger
2026-07-13 00:50:15
(2 weeks ago)
malicious bot detected: violations="hit-honeypot"; user_agent="Python-urllib/3.10"
Web App Attack
๐ฉ๐ช
tsZero
2026-07-12 06:56:52
(2 weeks ago)
Scan example: path=/.git/HEAD status=302
Hacking
๐ฎ๐น
LTM
2026-07-12 06:20:01
(2 weeks ago)
WebServer - Attempts to exploit
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
kosada.com
2026-07-08 15:59:52
(3 weeks ago)
Web vulnerability probing: /wp-includes/SimplePie/Cache/index.php
Web App Attack
๐ฌ๐ง
consul.to
2026-07-08 13:42:10
(3 weeks ago)
Web attack/malicious scanning detected
Web App Attack
๐ง๐ช
cmbplf
2026-07-03 18:47:15
(4 weeks ago)
109 requests with url.path *.sql.gz
Brute-Force
Bad Web Bot
๐บ๐ธ
abenage
2026-07-03 11:53:54
(4 weeks ago)
45.130.203.141 - - [03/Jul/2026:05:53:53 -0600] "GET /backup/mailserver.[redacted].bak HTTP/1.1" 404 ...
show more
45.130.203.141 - - [03/Jul/2026:05:53:53 -0600] "GET /backup/mailserver.[redacted].bak HTTP/1.1" 404 162 "-" "Jobmaster-Opendir/1.0"
show less
Bad Web Bot
Web App Attack