๐ณ๐ฑ
SysAdmin Dylan
2026-06-10 11:06:12
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.230.14.151 (KR/South Korea/151.14.230.8.bc.go ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.14.151 (KR/South Korea/151.14.230.8.bc.googleusercontent.com): 10 in the last 3600 secs
show less
Brute-Force
๐ท๐บ
DZBOT
2026-06-10 09:42:34
(5 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-10 05:37:50
(9 hours ago)
Excessive multi-domain requests
Brute-Force
๐ง๐ช
cmbplf
2026-06-10 01:42:22
(13 hours ago)
758 requests with url.path *.env
Brute-Force
Bad Web Bot
๐ฉ๐ช
updown.io
2026-06-10 00:33:03
(14 hours ago)
{"level":"info","ts":1781051582.3924468,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1781051582.3924468,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"8.230.14.151","remote_port":"55912","client_ip":"8.230.14.151","proto":"HTTP/1.1","method":"GET","host":"hgwww.www.c7402a95-6fc9-4756-b4e6-fa6c7eeb29c6.random.159.89.98.98.nip.io","uri":"/.env.testing","headers":{"Accept-Charset":["utf-8"],"Accept-Encoding":["gzip"],"Connection":["close"],"User-Agent":["Mozilla/5.0 (Linux; Android 4.4.2; SAMSUNG-SM-T537A Build/KOT49H) AppleWebKit/537.36 (KHTML like Gecko) Chrome/35.0.1916.141 Safari/537.36"]}},"bytes_read":0,"user_id":"","duration":0.000039596,"size":0,"status":308,"resp_headers":{"Server":["Caddy"],"Connection":["close"],"Location":["https://hgwww.www.c7402a95-6fc9-4756-b4e6-fa6c7eeb29c6.random.159.89.98.98.nip.io/.env.testing"],"Content-Type":[]}}
{"level":"info","ts":1781051582.5066783,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"8.230.14.151","remote_port":"55958","client_ip":"8.
...
show less
DDoS Attack
Web App Attack
๐บ๐ธ
mnsf
2026-06-10 00:14:52
(15 hours ago)
Too many Status 40X (90)
Scanning/Probing (85)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 23:49:05
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.230.14.151 (151.14.230.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.14.151 (151.14.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 19:49:01.552092 2026] [security2:error] [pid 21744:tid 21770] [client 8.230.14.151:37558] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.louisgfazzi.jd-web-designs.com"] [uri "/.env.dev"] [unique_id "aiimbfBaer9gjU--JnyYtgAAAFc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-06-09 22:24:46
(16 hours ago)
Blocked by CSF 13 firewall - Rule: US/United States/151.14.230.8.bc.googleusercontent.com
Web App Attack
๐ฌ๐ง
Apache
2026-06-09 22:09:50
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.230.14.151 (KR/South Korea/151.14.230.8.bc.go ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.14.151 (KR/South Korea/151.14.230.8.bc.googleusercontent.com): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:01:29
(17 hours ago)
Auto-ban: >3000 req/min op 2026-06-09
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 16:17:31
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.230.14.151 (151.14.230.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.14.151 (151.14.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 12:17:27.231242 2026] [security2:error] [pid 18815:tid 18815] [client 8.230.14.151:60432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dixieaire.com"] [uri "/.env.dist"] [unique_id "aig8l7YHL55sxMMBzGYwwwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-06-09 13:56:12
(1 day ago)
Multiple WAF Violations
Brute-Force
Web App Attack
Anonymous
2026-06-09 09:54:22
(1 day ago)
8.230.14.151 - - [09/Jun/2026:11:54:16 +0200] "GET /admin/.env.local HTTP/1.1" 403 7161 "-" "Mozilla ...
show more
8.230.14.151 - - [09/Jun/2026:11:54:16 +0200] "GET /admin/.env.local HTTP/1.1" 403 7161 "-" "Mozilla/5.0 (Linux; Android 9; moto g(6) plus) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36"
8.230.14.151 - - [09/Jun/2026:11:54:16 +0200] "GET /frontend/.env.local HTTP/1.1" 403 7161 "-" "Mozilla/5.0 (Linux; Android 9; SM-A505F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36"
8.230.14.151 - - [09/Jun/2026:11:54:16 +0200] "GET /v3/.env HTTP/1.1" 403 7161 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Ubuntu Chromium/73.0.3683.86 Chrome/73.0.3683.86 Safari/537.36"
8.230.14.151 - - [09/Jun/2026:11:54:17 +0200] "GET /src/api/.env HTTP/1.1" 403 7161 "-" "Mozilla/5.0 (Linux; Android 9; VOG-L09 Build/HUAWEIVOG-L09) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3497.128 Mobile Safari/537.36 (Ecosia [email protected] )"
8.230.14.151 - - [09/Jun/2026:11:54:17 +0200] "GET /development/.env HTTP/1.1"
...
show less
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:01:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 8.230.14.151 (151.14.230.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.14.151 (151.14.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:01:36.905852 2026] [security2:error] [pid 20605:tid 20605] [client 8.230.14.151:58402] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.globalpackets.net"] [uri "/.env"] [unique_id "aie6UNMd0mRWrQkhM7P9swAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
zynex
2026-06-09 06:26:01
(1 day ago)
URL Probing: /backend/api/.env
Web App Attack