๐บ๐ธ
drewf.ink
2026-09-01 11:59:57
(1 day ago)
[11:59] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gatew ...
show more
[11:59] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gateway fingerprinting/recon)
show less
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-05 07:46:06
(4 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐ช๐ธ
librebit
2026-07-04 06:58:41
(1 month ago)
Brute force
Brute-Force
๐ซ๐ท
Sklurk
2026-06-20 01:53:00
(2 months ago)
Web App Attack
Web App Attack
๐ฌ๐ง
relianoid.com
2026-05-04 10:59:41
(3 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
Anonymous
2026-04-08 15:28:20
(4 months ago)
Forum/form spam
Web Spam
Anonymous
2026-03-04 10:55:46
(5 months ago)
Forum/form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2026-02-11 23:20:51
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.13.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.13.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 18:20:44.614362 2026] [security2:error] [pid 14129:tid 14175] [client 65.111.13.81:46791] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arizonasolutionsgroup.com"] [uri "/.env"] [unique_id "aY0OzGbEu3qPNoP9afm3xQAAAMw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-02-10 23:00:36
(6 months ago)
Auto-ban: >3000 req/min op 2026-02-10
Hacking
Web App Attack
SSH
๐ฉ๐ช
big-cloud.nl
2026-02-10 22:27:40
(6 months ago)
Try to access /admin/.env
Web App Attack
๐บ๐ธ
Rocky Mountain Bioengineering Symposium
2026-02-10 03:51:51
(6 months ago)
65.111.13.81 - - [09/Feb/2026:20:51:50 -0700] "GET /site/.git/config HTTP/1.1" 301 497 "-" "Mozilla/ ...
show more
65.111.13.81 - - [09/Feb/2026:20:51:50 -0700] "GET /site/.git/config HTTP/1.1" 301 497 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 02:33:37
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.13.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.13.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 21:33:31.024474 2026] [security2:error] [pid 11004:tid 11004] [client 65.111.13.81:32453] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kindbyamber.com"] [uri "/backend/.env"] [unique_id "aYqY-7UGIi4ytZQlKtwXmQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Holger
2026-02-10 02:28:55
(6 months ago)
Bruteforce WebAttack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 01:51:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.13.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.13.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 20:51:27.487621 2026] [security2:error] [pid 25505:tid 25505] [client 65.111.13.81:32909] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hwy251.com"] [uri "/config/.env"] [unique_id "aYqPHwZtoEREJfvPjFGCDgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 23:48:36
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.13.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.13.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 18:48:30.386108 2026] [security2:error] [pid 2813:tid 2813] [client 65.111.13.81:13263] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ken-parker.com"] [uri "/app/.git/config"] [unique_id "aYpyTks77U-OHPoUtqGNRQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack