๐ญ๐บ
DumaNet
2026-05-28 03:53:00
(2 weeks ago)
Web app attack attempts, scanning for vulnerability.
Date: 2026 May 28. 05:15:52
Source IP: 5.255. ...
show more
Web app attack attempts, scanning for vulnerability.
Date: 2026 May 28. 05:15:52
Source IP: 5.255.99.115
Portion of the log(s):
5.255.99.115 - [28/May/2026:05:15:52 +0200] "GET /backend/.env HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 OPR/116.0.0.0"
5.255.99.115 - [28/May/2026:05:15:52 +0200] "GET /.env.backup HTTP/1.1" 404 153 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:132.0) Gecko/20100101 Firefox/132.0"
5.255.99.115 - [28/May/2026:05:15:52 +0200] "GET /.git/config HTTP/1.1" 404 153 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.2 Safari/605.1.15"
5.255.99.115 - [28/May/2026:05:15:52 +0200] "GET /application.yml HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/129.0.0.0 Safari/537.36"
5.255.99.115 - [28/May/2026:05:15:52 +0200] "GET /secrets.json HTTP/1.1" 404 555 "-" "Mo
show less
Web App Attack
Hacking
๐ญ๐บ
DumaNet
2026-05-28 03:36:00
(2 weeks ago)
Web app attack attempts, scanning for vulnerability.
Date: 2026 May 27. 05:03:55
Source IP: 5.255. ...
show more
Web app attack attempts, scanning for vulnerability.
Date: 2026 May 27. 05:03:55
Source IP: 5.255.99.115
Portion of the log(s):
5.255.99.115 - [28/May/2026:05:03:53 +0200] "GET /api/openapi.json HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) UBrowser/8.0.0.0 Chrome/120.0.0.0 Safari/537.36"
5.255.99.115 - [28/May/2026:05:03:53 +0200] "GET /openapi.json HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36"
5.255.99.115 - [28/May/2026:05:03:53 +0200] "GET /api/v2/settings HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
5.255.99.115 - [28/May/2026:05:03:53 +0200] "GET /api/health HTTP/1.1" 404 555 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
5.255.99.115 - [28/May/2026:05:03:53 +0200] "GET /manifest.webmanifest
show less
Web App Attack
Hacking
๐ณ๐ฑ
ReyhZhao
2026-05-28 03:01:20
(2 weeks ago)
Brute-Force
๐ง๐ช
madeit
2026-05-27 21:11:46
(2 weeks ago)
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-05-27 19:27:33
(2 weeks ago)
Probing websites for vulnerabilities
Web App Attack
๐ง๐ช
voormedia
2026-05-27 14:26:05
(2 weeks ago)
Accessed trap at '/.aws/credentials'
Web App Attack
๐ซ๐ท
dynamix
2026-05-27 14:18:58
(2 weeks ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
Spiderpiggy
2026-05-27 11:18:55
(2 weeks ago)
Automatically reported via Blackhole honeypot on games4you.be. Attempted access to restricted endpoi ...
show more
Automatically reported via Blackhole honeypot on games4you.be. Attempted access to restricted endpoint: /bad-bots-stoker
show less
Brute-Force
Bad Web Bot
SSH
๐ฉ๐ช
NewGastroline
2026-05-27 10:54:03
(2 weeks ago)
Malicious request blocked by CrowdSec on gastro-prod1.boreus.de
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-05-27 08:34:07
(2 weeks ago)
225 requests with url.path *.env
119 requests with url.path *config.json
Brute-Force
Bad Web Bot
Anonymous
2026-05-27 08:04:46
(2 weeks ago)
5.255.99.115 - - [27/May/2026:08:04:46 +0000] "GET /vault.env HTTP/1.1" 404 3728 "-" "Mozilla/5.0 (W ...
show more
5.255.99.115 - - [27/May/2026:08:04:46 +0000] "GET /vault.env HTTP/1.1" 404 3728 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:132.0) Gecko/20100101 Firefox/132.0"
...
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-05-27 07:24:21
(2 weeks ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
tentwentyfour
2026-05-27 07:03:31
(2 weeks ago)
Blocked for probing for sensitive web application components
Brute-Force
Web App Attack
๐ซ๐ท
Lunix
2026-05-27 06:54:36
(2 weeks ago)
Brute-Force
Web App Attack
๐ณ๐ฑ
DrLex0
2026-05-27 06:33:27
(2 weeks ago)
Suspicious persistent crawling on redirecting domain or port. Honor HSTS or die.
5.255.99.115 80 - ...
show more
Suspicious persistent crawling on redirecting domain or port. Honor HSTS or die.
5.255.99.115 80 - [27/May/2026:06:33:27 +0000] "GET [redacted] HTTP/1.1" 301 568 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:132.0) Gecko/20100101 Firefox/132.0"
5.255.99.115 80 - [27/May/2026:06:33:27 +0000] "GET [redacted] HTTP/1.1" 301 572 "-" "Mozilla/5.0 (Linux; Android 14; CPH2557) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Mobile Safari/537.36"
5.255.99.115 80 - [27/May/2026:06:33:27 +0000] "GET [redacted] HTTP/1.1" 301 604 "-" "Mozilla/5.0 (Linux; Android 14; Pixel 8) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Mobile Safari/537.36"
5.255.99.115 80 - [27/May/2026:06:33:27 +0000] "GET [redacted] HTTP/1.1" 301 596 "-" "Mozilla/5.0 (Linux; Android 14; SM-S928B) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Mobile Safari/537.36"
show less
Bad Web Bot