π©πͺ
iNetWorker
2026-06-06 19:38:50
(12 hours ago)
trolling for resource vulnerabilities
Web App Attack
π³π±
jjnxpct
2026-02-14 04:53:07
(3 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /.env.production (Rule ID: 930130) - Restricted File Access Attempt
show less
Hacking
Web App Attack
π«π·
dynamix
2026-02-13 08:55:54
(3 months ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-13 08:55:53
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 03:55:48.393910 2026] [security2:error] [pid 30695:tid 30695] [client 65.111.8.210:39713] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lamariposagallery.com"] [uri "/app/.env"] [unique_id "aY7nFJeVk8XNP7IBoZbrlgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-13 06:46:22
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 01:46:18.636112 2026] [security2:error] [pid 31110:tid 31110] [client 65.111.8.210:9249] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kristywernerauthor.com"] [uri "/frontend/.env"] [unique_id "aY7IuhMiul3eMPYrRB9jFQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-02-13 06:05:46
(3 months ago)
Too many Status 40X (11)
Scanning/Probing (12)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-13 05:53:31
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 00:53:27.612048 2026] [security2:error] [pid 12806:tid 12806] [client 65.111.8.210:40879] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "konahawaii.com"] [uri "/app/.git/config"] [unique_id "aY68V4bh1gRssLb_EWdMxAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-13 02:36:17
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 21:36:11.456545 2026] [security2:error] [pid 1173637:tid 1173637] [client 65.111.8.210:49357] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kenirving.com"] [uri "/.env"] [unique_id "aY6OG8wj6mzktc00Xj5LBgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
Kreapptivo
2026-02-13 00:51:40
(3 months ago)
[13/Feb/2026:01:51:34 +0100] Web-Request: "GET /.git/config", User-Agent: "Mozilla/5.0 (Windows NT 1 ...
show more
[13/Feb/2026:01:51:34 +0100] Web-Request: "GET /.git/config", User-Agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-12 17:51:34
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 12:51:28.858478 2026] [security2:error] [pid 28951:tid 28951] [client 65.111.8.210:29963] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boat-registration-greece.com"] [uri "/.env"] [unique_id "aY4TIJ1_BncmbMOyIfSI4AAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-12 16:05:15
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 11:05:09.624276 2026] [security2:error] [pid 1167:tid 1167] [client 65.111.8.210:20757] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boardingatthewedge.com"] [uri "/.git/config"] [unique_id "aY36NUht6fZU0_xHkoPNoAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
jjnxpct
2026-02-12 04:49:09
(3 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /.aws/credentials (Rule ID: 930130) - Restricted File Access Attempt
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-11 17:28:15
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 12:28:09.694610 2026] [security2:error] [pid 6189:tid 6189] [client 65.111.8.210:47445] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brinkworthmodels.com"] [uri "/.env.local"] [unique_id "aYy8KRNGha2HfhYNsC1hBgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-11 09:48:34
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 04:48:27.551840 2026] [security2:error] [pid 3735371:tid 3735371] [client 65.111.8.210:24597] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cottrillcyclodyne.com"] [uri "/.env.production"] [unique_id "aYxQa6M1FT5H8Qx8ZVZTTwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-11 00:00:33
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 19:00:24.572821 2026] [security2:error] [pid 25816:tid 25816] [client 65.111.8.210:33821] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cooper-katz.com"] [uri "/.env.production"] [unique_id "aYvGmN21FJLdSAfsUwPS0wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack