๐ต๐ฑ
Budyn
2026-08-28 22:25:47
(3 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: keycloak.astropot.store | URI: /.git/HEAD | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-28 06:44:01
(4 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: dev.astropot.website | URI: /backup.sql | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
klaus_ph
2026-08-19 01:56:56
(1 week ago)
47.82.54.217 - - [18/Aug/2026:17:17:54 +0200] "GET /gnd/Record/123481015/Details?lng=el HTTP/1.1" 20 ...
show more
47.82.54.217 - - [18/Aug/2026:17:17:54 +0200] "GET /gnd/Record/123481015/Details?lng=el HTTP/1.1" 200 13940 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
๐ซ๐ท
Entalpi.net
2026-08-03 22:18:31
(4 weeks ago)
Repeated scrapping attempts on unallowed content and/or repeated tarpit hits
Bad Web Bot
๐ท๐บ
Mga Admin
2026-08-01 08:57:34
(1 month ago)
47.82.54.217 - - [01/Aug/2026:15:57:34 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs61737519 ...
show more
47.82.54.217 - - [01/Aug/2026:15:57:34 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs61737519 HTTP/1.1" 404 67 "https://phelige.com/associations?p=5e-8&r2=0.9&rs-id=rs61737519" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ท๐บ
Mga Admin
2026-07-31 07:20:14
(1 month ago)
47.82.54.217 - - [31/Jul/2026:14:20:12 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs14326313 ...
show more
47.82.54.217 - - [31/Jul/2026:14:20:12 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs143263134 HTTP/1.1" 404 67 "https://phelige.com/associations?p=5e-8&r2=0.9&rs-id=rs143263134" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/140.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ซ๐ท
Sklurk
2026-07-28 14:50:57
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-07-27 04:02:42
(1 month ago)
Web App Attack
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-07-20 07:49:40
(1 month ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after obfuscated redirect. Vegas Security
DDoS Attack
Hacking
Exploited Host
๐ฉ๐ช
LRob
2026-07-14 19:13:05
(1 month ago)
CrowdSec: PrestaShop login open-redirect / back= recursion abuse | req: /connexion?back=https%3A%2F% ...
show more
CrowdSec: PrestaShop login open-redirect / back= recursion abuse | req: /connexion?back=https%3A%2F%2Fcycling.fr%2Fconnexion%3Fback%3Dhttps%253A%252F%252Fcycling.fr%252Fconnexion%253Fback%253Dhttps%25253A%25252F%25252Fcycling.fr%25252Fconnexion%25253Fback%25253Dhttps%2525253A%2525252F%2525252Fcycling.fr%2525252Fconnexion | 2 distinct paths | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36
show less
Web App Attack
๐ฎ๐น
A000Z
2026-07-07 11:36:04
(1 month ago)
Fail2Ban: 47.82.54.217 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 ...
show more
Fail2Ban: 47.82.54.217 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36
show less
Bad Web Bot
๐ซ๐ท
demomodule
2026-07-03 03:27:00
(1 month ago)
PrestaShop Security Module: nested/encoded redirect parameter abuse on "back" (occurrences=10)
Web App Attack
๐ฐ๐ท
zlhIcd
2026-06-23 03:41:27
(2 months ago)
47.82.54.217 - - [16/Jun/2026:08:06:51 +0900] "GET /hgwiki/index.php?returnto=%ED%8A%B9%EC%88%98%EA% ...
show more
47.82.54.217 - - [16/Jun/2026:08:06:51 +0900] "GET /hgwiki/index.php?returnto=%ED%8A%B9%EC%88%98%EA%B8%B0%EB%8A%A5%3A%EB%A7%81%ED%81%AC%EC%B5%9C%EA%B7%BC%EB%B0%94%EB%80%9C&returntoquery=days%3D7%26hideanons%3D1%26hideliu%3D1%26hideminor%3D1%26hidemyself%3D1%26limit%3D100%26target%3DOakenburn_%25EC%25B9%25B4%25EB%25A5%25B4%25EC%258A%25A4%25EB%258C%2580%25ED%2585%258C%25EB%259F%25AC%25EC%2582%25AC%25EA%25B1%25B4&title=%ED%8A%B9%EC%88%98%EA%B8%B0%EB%8A%A5%3A%EB%A1%9C%EA%B7%B8%EC%9D%B8 HTTP/1.1" 404 459 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36"
...
show less
Web Spam
SQL Injection
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-06-22 04:18:02
(2 months ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
Anonymous
2026-06-17 02:30:41
(2 months ago)
Large-scale coordinated botnet (200+k IPs). Attacker: mikhail-smirnov-79830323 (LinkedIn/profile ID) ...
show more
Large-scale coordinated botnet (200+k IPs). Attacker: mikhail-smirnov-79830323 (LinkedIn/profile ID) employed by Angara Technologies Group (Explicitly identified himself as enemy a week before attack began) | Rate limit bad session: 3 in 2s | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/139.0.0.0 Safari/537.36 | (Magento Site)
show less
DDoS Attack
Bad Web Bot