๐ท๐ด
iulianh
2026-08-23 17:07:10
(1 hour ago)
80,443
Brute-Force
SSH
๐ต๐ฑ
Budyn
2026-08-20 17:03:14
(3 days ago)
Budyn SOC Canary Trap: AWS Key Compromised! | Memo: AWS_Token_7 | Action: AWS API Call | Token: 4dv ...
show more
Budyn SOC Canary Trap: AWS Key Compromised! | Memo: AWS_Token_7 | Action: AWS API Call | Token: 4dvmm7wgh55qaj86jjj1vqe1z | Client Tool: TruffleHog
show less
Hacking
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-20 08:33:20
(3 days ago)
AWS Key Honeypot triggered. Event: AWS API Call | Canary Memo: AWS_Token_4
Hacking
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-19 23:18:02
(3 days ago)
AWS Key Honeypot triggered. Event: AWS API Call | Canary Memo: AWS_Token_8
Hacking
Bad Web Bot
Web App Attack
Anonymous
2026-08-18 06:34:51
(5 days ago)
"GET /.git/config HTTP/1.1"
Hacking
Web App Attack
๐ฉ๐ช
raph
2026-08-17 18:40:41
(5 days ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐ซ๐ท
MatStef132
2026-08-16 22:07:40
(6 days ago)
MatShield L7: blocked on mathost.eu (automation-ua)
DDoS Attack
Anonymous
2026-08-15 06:35:02
(1 week ago)
suspicious request in access.log
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-08-15 05:08:20
(1 week ago)
dot file probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-14 12:41:33
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 62.228.141.26 (62-141-26.netrun.cytanet.com.cy) ...
show more
(mod_security) mod_security (id:210492) triggered by 62.228.141.26 (62-141-26.netrun.cytanet.com.cy): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 14 08:41:29.781289 2026] [security2:error] [pid 2575341:tid 2575341] [client 62.228.141.26:17554] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dev.budgetguard.com"] [uri "/.git/config"] [unique_id "an8M-QDGBJoMtNNOtRdnxAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dwmp
2026-08-14 04:30:29
(1 week ago)
[14/Aug/2026:06:30:27.828721 +0200] an6Z45XuyKSz2xiNXkRYMwAAAEY 62.228.141.26 60854 38.242.227.117 7 ...
show more
[14/Aug/2026:06:30:27.828721 +0200] an6Z45XuyKSz2xiNXkRYMwAAAEY 62.228.141.26 60854 38.242.227.117 7081
[14/Aug/2026:06:30:28.561465 +0200] an6Z5JXuyKSz2xiNXkRYNAAAAFc 62.228.141.26 43420 38.242.227.117 7081
[14/Aug/2026:06:30:29.439128 +0200] an6Z5eKJ_LxU4RycIaVN3QAAAAk 62.228.141.26 43422 38.242.227.117 7081
...
show less
Brute-Force
SSH
๐ต๐ฑ
srebrakowski.com
2026-08-13 17:18:03
(1 week ago)
crowdsec/waf-detected-exploits
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-13 11:17:03
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 62.228.141.26 (62-141-26.netrun.cytanet.com.cy) ...
show more
(mod_security) mod_security (id:210492) triggered by 62.228.141.26 (62-141-26.netrun.cytanet.com.cy): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 07:16:59.147119 2026] [security2:error] [pid 20196:tid 20196] [client 62.228.141.26:40976] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.whiddenstudios.com"] [uri "/.git/config"] [unique_id "an2nq0Nu0XuYlIrHRmSMZwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-13 10:58:28
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 62.228.141.26 (62-141-26.netrun.cytanet.com.cy) ...
show more
(mod_security) mod_security (id:210492) triggered by 62.228.141.26 (62-141-26.netrun.cytanet.com.cy): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 06:58:22.610898 2026] [security2:error] [pid 20959:tid 20959] [client 62.228.141.26:26732] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.thorsander.com"] [uri "/.git/config"] [unique_id "an2jTrOJXm9aVnOpHvMT2QAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
sernate
2026-08-13 00:16:37
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 62.228.141.26 (CY/Cyprus/62-141-26.netrun.cytan ...
show more
(mod_security) mod_security (id:210492) triggered by 62.228.141.26 (CY/Cyprus/62-141-26.netrun.cytanet.com.cy): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_MODSEC
show less
Brute-Force