🇺🇸
TPI-Abuse
2026-09-04 06:39:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 54.198.50.3 (ec2-54-198-50-3.compute-1.amazonaw ...
show more
(mod_security) mod_security (id:210492) triggered by 54.198.50.3 (ec2-54-198-50-3.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 02:39:23.164435 2026] [security2:error] [pid 8831:tid 8831] [client 54.198.50.3:48950] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jbsellsre.burlison.com"] [uri "/.git/config"] [unique_id "appnm3VNyuXyekFekk-gwQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-04 06:05:44
(1 day ago)
Scanning/Probing (45)
Brute-Force
Web App Attack
🇫🇷
dynamix
2026-09-04 04:34:54
(1 day ago)
Multiple WAF Violations
Web App Attack
🇳🇱
Savvii
2026-09-04 04:28:17
(1 day ago)
20 attempts against mh-misbehave-ban on sonic
Brute-Force
Bad Web Bot
Web App Attack
🇳🇿
Antinson
2026-09-04 03:43:07
(1 day ago)
Scraping with a high error ratio and request rate
Bad Web Bot
🇳🇱
Site.eu
2026-09-04 03:42:43
(1 day ago)
Excessive multi-domain requests
Brute-Force
🇺🇸
TPI-Abuse
2026-09-04 03:30:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 54.198.50.3 (ec2-54-198-50-3.compute-1.amazonaw ...
show more
(mod_security) mod_security (id:210492) triggered by 54.198.50.3 (ec2-54-198-50-3.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 23:29:56.234364 2026] [security2:error] [pid 17263:tid 17263] [client 54.198.50.3:57552] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jbcllcnet.com"] [uri "/.git/config"] [unique_id "apo7NIYBYwZ-XlLf47ZqNAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 02:00:18
(1 day ago)
[dev.backorder.gr] httpd-config-scan: sites=global; logs=/var/log/nginx/access.log; samples=/.git/co ...
show more
[dev.backorder.gr] httpd-config-scan: sites=global; logs=/var/log/nginx/access.log; samples=/.git/config | /.env | /.env.local
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 01:47:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 54.198.50.3 (ec2-54-198-50-3.compute-1.amazonaw ...
show more
(mod_security) mod_security (id:210492) triggered by 54.198.50.3 (ec2-54-198-50-3.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 21:47:33.752056 2026] [security2:error] [pid 19491:tid 19491] [client 54.198.50.3:50864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jazziiafoundation.org"] [uri "/.git/config"] [unique_id "apojNS-uc_TC1QYZiq4pRQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-04 01:47:27
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇫🇷
masterguru
2026-09-04 01:23:37
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 00:02:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 54.198.50.3 (ec2-54-198-50-3.compute-1.amazonaw ...
show more
(mod_security) mod_security (id:210492) triggered by 54.198.50.3 (ec2-54-198-50-3.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 20:02:31.209269 2026] [security2:error] [pid 31787:tid 31787] [client 54.198.50.3:60962] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "palumbodesigns.com"] [uri "/.git/config"] [unique_id "apoKl3VHYc40imyq7y69eQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-03 23:30:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇳🇱
e.fierstra
2026-09-03 23:25:19
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 23:21:37
(1 day ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack