๐ฉ๐ช
thesimonmanuel
2026-08-01 07:28:08
(1 minute ago)
5.161.62.209 - - [01/Aug/2026:12:58:07 +0530] "GET /.env HTTP/1.1" 404 46692 "-" "Mozilla/5.0 (Macin ...
show more
5.161.62.209 - - [01/Aug/2026:12:58:07 +0530] "GET /.env HTTP/1.1" 404 46692 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "5.161.62.209"
show less
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-08-01 07:20:06
(9 minutes ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐ฉ๐ช
itsolon
2026-08-01 07:00:36
(28 minutes ago)
[01/Aug/2026:09:00:33 +0200] 178556763319.718565 5.161.62.209 0 217.154.7.177 443
[01/Aug/2026:09:00 ...
show more
[01/Aug/2026:09:00:33 +0200] 178556763319.718565 5.161.62.209 0 217.154.7.177 443
[01/Aug/2026:09:00:35 +0200] 178556763581.813978 5.161.62.209 0 217.154.7.177 443
[01/Aug/2026:09:00:35 +0200] 178556763544.129238 5.161.62.209 0 217.154.7.177 443
[01/Aug/2026:09:00:35 +0200] 178556763514.106746 5.161.62.209 0 217.154.7.177 443
[01/Aug/2026:09:00:35 +0200] 178556763539.962917 5.161.62.209 0 217.154.7.177 443
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
[email protected]
2026-08-01 06:45:06
(44 minutes ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-08-01T06:45:06Z
Brute-Force
๐ฉ๐ช
Gwyneth Llewelyn
2026-08-01 06:23:03
(1 hour ago)
5.161.62.209 - - [01/Aug/2026:07:23:00 +0100] "GET /.env HTTP/2.0" 301 162 "-" "Mozilla/5.0 (Macinto ...
show more
5.161.62.209 - - [01/Aug/2026:07:23:00 +0100] "GET /.env HTTP/2.0" 301 162 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36"
2026/08/01 07:23:01 [error] 1078939#1078939: *58585 access forbidden by rule, client: 5.161.62.209, server: alzulej.pt, request: "GET /.env HTTP/2.0", host: "alzulej.pt"
5.161.62.209 - - [01/Aug/2026:07:23:01 +0100] "GET /.env HTTP/2.0" 403 1045 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36"
show less
Brute-Force
Web App Attack
๐น๐ท
oalver
2026-08-01 06:22:35
(1 hour ago)
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signa ...
show more
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signature. Sources: nginx. Details: path_signature: request to /.env (HTTP 404). First seen: 2026-07-31. Risk score: 60/100.
show less
Web App Attack
๐ฉ๐ช
macrob
2026-08-01 06:19:13
(1 hour ago)
2026/08/01 06:19:12 [error] 3687370#3687370: *434080519 access forbidden by rule, client: 5.161.62.2 ...
show more
2026/08/01 06:19:12 [error] 3687370#3687370: *434080519 access forbidden by rule, client: 5.161.62.209, server: binixo.com, request: "GET /.env HTTP/2.0", host: "binixo.com"
2026/08/01 06:19:12 [error] 3687368#3687368: *434074793 access forbidden by rule, client: 5.161.62.209, server: binixo.lk, request: "GET /.env HTTP/2.0", host: "binixo.lk"
2026/08/01 06:19:12 [error] 3687368#3687368: *434074793 access forbidden by rule, client: 5.161.62.209, server: binixo.lk, request: "GET /.env HTTP/2.0", host: "binixo.lk"
...
show less
Web App Attack
๐ฉ๐ช
wpadm4
2026-08-01 06:00:57
(1 hour ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
[email protected]
2026-08-01 06:00:04
(1 hour ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-08-01T06:00:02Z
Brute-Force
๐ฉ๐ช
juutis
2026-08-01 05:02:18
(2 hours ago)
Multiple WAF abuses - IP blocked
Hacking
Brute-Force
Web App Attack
๐ฉ๐ช
schuh
2026-08-01 04:08:24
(3 hours ago)
01-08-2026:04:07:40UTC [Caddy] Suspicious web request: uri:/.env (1 request) tcp:443
Bad Web Bot
Web App Attack
๐ฌ๐ง
sleepingcat1714
2026-08-01 04:04:34
(3 hours ago)
01-08-2026:04:04:34UTC [Web Server] Suspicious web request: path:/.env (1 request(s)).
Bad Web Bot
Web App Attack
๐ฉ๐ช
tsZero
2026-08-01 03:59:52
(3 hours ago)
Scan example: path=/.env status=403
Hacking
๐ฉ๐ช
Gwyneth Llewelyn
2026-08-01 03:55:36
(3 hours ago)
5.161.62.209 - - [01/Aug/2026:04:55:33 +0100] "GET /.env HTTP/2.0" 301 162 "-" "Mozilla/5.0 (Windows ...
show more
5.161.62.209 - - [01/Aug/2026:04:55:33 +0100] "GET /.env HTTP/2.0" 301 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/101.0.4951.64 Safari/537.36 Edg/101.0.1210.47"
2026/08/01 04:55:34 [error] 1078939#1078939: *40607 access forbidden by rule, client: 5.161.62.209, server: mar.pt, request: "GET /.env HTTP/2.0", host: "mar.pt"
5.161.62.209 - - [01/Aug/2026:04:55:34 +0100] "GET /.env HTTP/2.0" 403 1045 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/101.0.4951.64 Safari/537.36 Edg/101.0.1210.47"
show less
Brute-Force
Web App Attack
๐ต๐ฑ
Budyn
2026-08-01 03:51:59
(3 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: definitelynotahoneypot.xyz | URI: /.env | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/26.0 Safari/605.1.15 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack