๐จ๐ญ
TheCoon
2026-05-30 19:15:02
(2 weeks ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
Anonymous
2026-05-27 08:05:30
(2 weeks ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 06:30:07
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 02:30:02.880001 2026] [security2:error] [pid 14102:tid 14102] [client 8.230.12.71:42708] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.leadek.com"] [uri "/.git/config"] [unique_id "ahaPanoKxrfqw_QmPOqT9wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-05-27 06:30:04
(2 weeks ago)
Login credentials theft attempt
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-27 05:09:08
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 01:09:00.288024 2026] [security2:error] [pid 31008:tid 31008] [client 8.230.12.71:52646] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.digitaltom.net"] [uri "/.git/config"] [unique_id "ahZ8bEFXnyw5SHYmtxOPFAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-05-27 05:06:06
(2 weeks ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 8.230.12.71 (KR/South Korea/71.12.230 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 8.230.12.71 (KR/South Korea/71.12.230.8.bc.googleusercontent.com): 1 in the last 3600 secs (0-197)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-27 04:16:12
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 00:16:06.194888 2026] [security2:error] [pid 13934:tid 13934] [client 8.230.12.71:59028] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.flatchestedmama.com"] [uri "/.git/config"] [unique_id "ahZwBrwcug4OOOsY96VCEgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 03:57:40
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 23:57:37.338326 2026] [security2:error] [pid 9823:tid 9823] [client 8.230.12.71:52776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.filardi.org"] [uri "/.git/config"] [unique_id "ahZrsb3Uv_przHftIjwsPgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Roper123
2026-05-27 02:36:06
(2 weeks ago)
Web app attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 02:24:47
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 22:24:43.049119 2026] [security2:error] [pid 19283:tid 19283] [client 8.230.12.71:38216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.sexycyborg.net"] [uri "/.git/config"] [unique_id "ahZV6yWLJl8FRnw4oVhwFwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 01:49:40
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 21:49:36.743176 2026] [security2:error] [pid 14707:tid 14707] [client 8.230.12.71:38444] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.ecodesarrollourbano.com"] [uri "/.git/config"] [unique_id "ahZNsM35oVNs38wjlZWqXQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-05-27 01:32:16
(2 weeks ago)
trolling for resource vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 01:14:59
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 21:14:55.831371 2026] [security2:error] [pid 12342:tid 12342] [client 8.230.12.71:42652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.banapest.com"] [uri "/.git/config"] [unique_id "ahZFjziGBodAP-LXvE5IYAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 00:47:56
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 20:47:53.908362 2026] [security2:error] [pid 4164:tid 4164] [client 8.230.12.71:57146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.robcruickshank.com"] [uri "/.git/config"] [unique_id "ahY_OaVxNbrdOyA11h0xqgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 00:28:28
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.12.71 (71.12.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 20:28:21.516708 2026] [security2:error] [pid 3611:tid 3611] [client 8.230.12.71:57544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.orboftime.com"] [uri "/.git/config"] [unique_id "ahY6pWcCXoBpQInVNs5uOgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack