๐ฌ๐ง
PeravixGroup
2026-05-07 20:24:57
(4 weeks ago)
Honeypot detection: Kubernetes API unauthorized access / cluster abuse attempt on port 6443. Severit ...
show more
Honeypot detection: Kubernetes API unauthorized access / cluster abuse attempt on port 6443. Severity: MEDIUM. Aaran.cloud
show less
Hacking
Exploited Host
๐ฌ๐ง
PeravixGroup
2026-05-05 21:08:07
(1 month ago)
Honeypot detection: Kubernetes API unauthorized access / cluster abuse attempt on port 6443. Severit ...
show more
Honeypot detection: Kubernetes API unauthorized access / cluster abuse attempt on port 6443. Severity: MEDIUM. Aaran.cloud
show less
Hacking
Exploited Host
๐ฌ๐ง
relianoid.com
2026-03-30 06:07:25
(2 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
๐บ๐ธ
TPI-Abuse
2026-02-09 21:50:54
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.46.101 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.46.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 16:50:46.696534 2026] [security2:error] [pid 10643:tid 10643] [client 45.3.46.101:53469] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garyschirmer.com"] [uri "/new/.git/config"] [unique_id "aYpWth2W6pjbO0Xa3521TAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 12:01:18
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.46.101 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.46.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 07:01:14.509485 2026] [security2:error] [pid 18707:tid 18707] [client 45.3.46.101:31603] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "galysh.us"] [uri "/app/.env"] [unique_id "aYnMijDCIwPcntAqP00cagAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
filou812
2026-02-09 10:56:24
(3 months ago)
url tried is "/config/.env"
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 10:38:50
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.46.101 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.46.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 05:38:42.014006 2026] [security2:error] [pid 174439:tid 174552] [client 45.3.46.101:57013] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gafmboard.com"] [uri "/test/.git/config"] [unique_id "aYm5MrBStXOODiSAdTvgSgAAAYo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 10:13:08
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.46.101 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.46.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 05:13:00.628000 2026] [security2:error] [pid 12730:tid 12730] [client 45.3.46.101:10439] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gabver.com"] [uri "/backend/.env"] [unique_id "aYmzLI8cuvIocEbSDsjEdgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 06:14:39
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.46.101 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.46.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 01:14:35.364469 2026] [security2:error] [pid 6273:tid 6273] [client 45.3.46.101:57193] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "furballproductions.org"] [uri "/app/.env"] [unique_id "aYl7S9D05_YwfixWeynVjwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 05:23:20
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.46.101 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.46.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 00:23:14.631952 2026] [security2:error] [pid 2617:tid 2617] [client 45.3.46.101:46429] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fundingworkingcapital.com"] [uri "/admin/.git/config"] [unique_id "aYlvQvVOQbTenxheBwSiiQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-03 13:35:21
(5 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.01.03 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.01.03 is noted in report timestamp
show less
Hacking
Brute-Force
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-31 00:57:38
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
Anonymous
2025-11-03 18:28:00
(7 months ago)
Unauthorized connection attempt
Brute-Force
Anonymous
2025-11-02 14:57:40
(7 months ago)
This IP was involved in an brute force and password spray attack on 2025/11/02 06:50:20
Port Scan
Brute-Force
Exploited Host
Web App Attack
Anonymous
2025-02-28 22:06:04
(1 year ago)
wordpress-trap
Web App Attack