๐บ๐ธ
drewf.ink
2026-08-29 09:54:24
(4 days ago)
[09:54] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gatew ...
show more
[09:54] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gateway fingerprinting/recon)
show less
Web App Attack
๐บ๐ธ
GreekCity
2026-08-28 14:08:55
(5 days ago)
bad-bot hacking for vulnerable links.
Hacking
Exploited Host
๐ซ๐ท
Sklurk
2026-08-17 03:18:18
(2 weeks ago)
Web App Attack
Web App Attack
๐ฉ๐ช
webko.si
2026-08-15 18:27:31
(2 weeks ago)
pridenmozic.si: Bruteforce web app access, URI detail: '/.git/config'.
Web App Attack
๐ซ๐ท
dynamix
2026-07-17 02:29:07
(1 month ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-07-12 17:33:00
(1 month ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after attack pattern. Vegas Security
Hacking
Web App Attack
๐บ๐ธ
ShadowWhisperer
2026-05-03 04:38:59
(3 months ago)
DOCKER port scan / probe. GET /secrets
Port Scan
๐ณ๐ฑ
jjnxpct
2026-02-11 04:52:58
(6 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /api/.env (Rule ID: 930130) - Restricted File Access Attempt [Suspicious: .env found within REQUEST_FILENAME: /api/.env]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 15:33:08
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 10:33:04.922245 2026] [security2:error] [pid 9229:tid 9229] [client 45.3.41.146:33455] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "10bestrealtors.com"] [uri "/test/.git/config"] [unique_id "aYtPsFNnRlLqvEh5E0eEpgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 06:22:38
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 01:22:31.716458 2026] [security2:error] [pid 12745:tid 12750] [client 45.3.41.146:42815] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mailme.name"] [uri "/new/.git/config"] [unique_id "aYrOpyzFaBOFmlrgLfGA5gAAAII"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 06:06:45
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 01:06:32.848653 2026] [security2:error] [pid 5090:tid 5090] [client 45.3.41.146:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail-pmg.com"] [uri "/frontend/.env"] [unique_id "aYrK6NQMXALEDSX9YycmmwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 04:46:27
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 23:46:23.488905 2026] [security2:error] [pid 14688:tid 14688] [client 45.3.41.146:40059] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "magnawebinc.com"] [uri "/frontend/.env"] [unique_id "aYq4H-d2Q6dsS2tkvzDIWwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:20:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:20:30.352402 2026] [security2:error] [pid 1249:tid 1249] [client 45.3.41.146:17111] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kipdollar.com"] [uri "/wp/.git/config"] [unique_id "aYqj_n6JZ2yZ3VAHqKTdawAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 02:10:09
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 21:10:04.216580 2026] [security2:error] [pid 9695:tid 9695] [client 45.3.41.146:33635] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hydrogenplus.net"] [uri "/api/.git/config"] [unique_id "aYqTfJUcymKnB8Ez7bF7jQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 23:48:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 18:47:58.409620 2026] [security2:error] [pid 18170:tid 18170] [client 45.3.41.146:15831] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hteca.com"] [uri "/admin/.env"] [unique_id "aYpyLo94w4jazfXzaStRGwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack