๐ซ๐ท
masterguru
2026-05-28 15:38:17
(6 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐ง๐ช
Ivo Vynckier
2026-05-28 13:18:00
(6 days ago)
72.14.147.180 - - [27/May/2026:19:31:53 +0200] "GET /.git/HEAD HTTP/1.1" 403 117 "-" "Mozilla/5.0 (M ...
show more
72.14.147.180 - - [27/May/2026:19:31:53 +0200] "GET /.git/HEAD HTTP/1.1" 403 117 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 15.7; rv:149.0) Gecko/20100101 Firefox/149.0"
72.14.147.180 - - [27/May/2026:19:31:54 +0200] "GET /.git/config HTTP/1.1" 403 117 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:149.0) Gecko/20100101 Firefox/149.0"
show less
Web App Attack
๐ซ๐ท
Baking333
2026-05-28 02:09:43
(1 week ago)
[redacted] 72.14.147.180 - - [28/May/2026:03:09:41 +0100] "GET /.git/HEAD HTTP/1.1" 302 1499 0/12751 ...
show more
[redacted] 72.14.147.180 - - [28/May/2026:03:09:41 +0100] "GET /.git/HEAD HTTP/1.1" 302 1499 0/127516 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36" [redacted] 72.14.147.180 - - [28/May/2026:03:09:42 +0100] "GET /.env HTTP/1.1" 302 1499 0/85213 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 15_7_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/26.0 Safari/605.1.15"
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
andypiper
2026-05-28 01:02:02
(1 week ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐ฉ๐ช
Philister11
2026-05-28 00:13:26
(1 week ago)
CrowdSec: crowdsecurity/http-sensitive-files (US/AS834)
Web App Attack
Hacking
๐ฉ๐ช
ger-stg-sifi1
2026-05-27 23:40:16
(1 week ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
Anonymous
2026-05-27 22:51:06
(1 week ago)
(caddyscan) Scanner path probe from 72.14.147.180 (US/United States/-): 5 in the last 3600 secs; Por ...
show more
(caddyscan) Scanner path probe from 72.14.147.180 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:22:51:01 +0000] "GET /.git/HEAD HTTP/1.1"
[REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:22:51:02 +0000] "GET /.env HTTP/1.1"
[REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:22:51:04 +0000] "GET /.env.local HTTP/1.1"
[REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:22:51:05 +0000] "GET /.env.production HTTP/1.1"
[REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:22:51:05 +0000] "GET /.aws/credentials HTTP/1.1"
show less
Port Scan
๐ฉ๐ช
big-cloud.nl
2026-05-27 20:21:51
(1 week ago)
Try to access /.git/config
Web App Attack
Anonymous
2026-05-27 20:04:45
(1 week ago)
(caddyscan) Scanner path probe from 72.14.147.180 (US/United States/-): 5 in the last 3600 secs; Por ...
show more
(caddyscan) Scanner path probe from 72.14.147.180 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:20:04:35 +0000] "GET /.env HTTP/1.1"
[REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:20:04:37 +0000] "GET /.env.local HTTP/1.1"
[REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:20:04:39 +0000] "GET /.git/HEAD HTTP/1.1"
[REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:20:04:39 +0000] "GET /.aws/credentials HTTP/1.1"
[REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:20:04:44 +0000] "GET /.env.production HTTP/1.1"
show less
Port Scan
๐ช๐ธ
elcruzado.es
2026-05-27 20:02:57
(1 week ago)
(mod_security) mod_security triggered on hostname [redacted] 72.14.147.180 (US/United States/-)
SQL Injection
Anonymous
2026-05-27 12:01:54
(1 week ago)
(caddyscan) Scanner path probe from 72.14.147.180 (US/United States/-): 5 in the last 3600 secs; Por ...
show more
(caddyscan) Scanner path probe from 72.14.147.180 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:12:01:48 +0000] "GET /.git/HEAD HTTP/1.1"
[REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:12:01:50 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:12:01:50 +0000] "GET /backend/.env HTTP/1.1"
[REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:12:01:50 +0000] "GET /.env HTTP/1.1"
[REDACTED] 200 2627 72.14.147.180 - - [27/May/2026:12:01:50 +0000] "GET /.aws/credentials HTTP/1.1"
show less
Port Scan
๐ฌ๐ง
martenmark
2026-05-27 11:56:31
(1 week ago)
72.14.147.180 - - [27/May/2026:11:56:30 +0000] "GET /.git/HEAD HTTP/1.1" 403 669 "-" "Mozilla/5.0 (W ...
show more
72.14.147.180 - - [27/May/2026:11:56:30 +0000] "GET /.git/HEAD HTTP/1.1" 403 669 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:149.0) Gecko/20100101 Firefox/149.0"
...
show less
Web App Attack
๐บ๐ธ
Major Hostility
2026-05-26 13:38:31
(1 week ago)
"GET /.git/HEAD HTTP/1.1" 404
"GET /.env HTTP/1.1" 404
Web App Attack
๐ณ๐ฑ
ParaBug
2026-05-26 10:39:29
(1 week ago)
72.14.147.180 - - [26/May/2026:12:39:29 +0200] "-" 408 3681 "-" "-"
...
Phishing
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-05-26 09:41:01
(1 week ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack