๐ฉ๐ช
Philister11
2026-08-30 00:16:34
(1 day ago)
CrowdSec: crowdsecurity/http-probing (US/AS396982)
Web App Attack
Hacking
๐บ๐ธ
mnsf
2026-08-30 00:05:32
(1 day ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 23:45:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 8.234.234.56 (56.234.234.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.234.56 (56.234.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 19:45:43.359176 2026] [security2:error] [pid 23886:tid 23886] [client 8.234.234.56:60096] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.blog.qosmexico.com"] [uri "/html/.git/config"] [unique_id "apNvJ7BUpb6spmB5jixvSwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-29 22:40:05
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 22:35:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 8.234.234.56 (56.234.234.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.234.56 (56.234.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 18:35:32.111181 2026] [security2:error] [pid 14385:tid 14385] [client 8.234.234.56:55392] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "worthhistory.org"] [uri "/public/.git/config"] [unique_id "apNetMBl1oPY2RFY23cNKwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 04:35:30
(3 days ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐น๐ผ
ashiyasayo
2026-08-28 00:34:00
(3 days ago)
Detected high-risk vulnerability exploit attempt, injection, high.
Web App Attack
๐ฉ๐ช
pltcldvlpr
2026-08-27 22:27:12
(3 days ago)
CMS/framework probe: 8.234.234.56 - - [28/Aug/2026:00:27:12 +0200] "GET /backend/.git/config HTTP/1. ...
show more
CMS/framework probe: 8.234.234.56 - - [28/Aug/2026:00:27:12 +0200] "GET /backend/.git/config HTTP/1.1" 444 0 "-" "crusader-worker/1.0" asn=396982 org="Google LLC" country=US
...
show less
Web App Attack
๐ธ๐ช
SkyDancer
2026-08-27 20:55:24
(3 days ago)
Multiple intrusion attempts via http/https on known vulnerable url offsets. Attack automatically blo ...
show more
Multiple intrusion attempts via http/https on known vulnerable url offsets. Attack automatically blocked by SkyDancer Ai(web-X).
show less
Hacking
Brute-Force
๐ฉ๐ช
BlueWire Hosting
2026-08-27 18:29:25
(3 days ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:30:29
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 8.234.234.56 (56.234.234.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.234.56 (56.234.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:30:20.175438 2026] [security2:error] [pid 24595:tid 24595] [client 8.234.234.56:35996] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cassandramari.com"] [uri "/app/.git/config"] [unique_id "apBmHH_zceY88-p5Tt5p5QAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:00:28
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 8.234.234.56 (56.234.234.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.234.56 (56.234.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:00:22.679709 2026] [security2:error] [pid 13447:tid 13447] [client 8.234.234.56:44266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hilltopfound.com"] [uri "/app/.git/config"] [unique_id "apBfFmCpaByemJL_Jew4TQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-27 13:33:57
(3 days ago)
Multiple WAF Violations
Web App Attack
๐จ๐ญ
Origon
2026-08-27 12:54:02
(3 days ago)
http-sensitive-files - IP: 8.234.234.56 - time="2026-08-27T14:54:01+02:00" level=info msg="(555f66b ...
show more
http-sensitive-files - IP: 8.234.234.56 - time="2026-08-27T14:54:01+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 8.234.234.56 (US/396982) : 4h ban on Ip 8.234.234.56" module=db
show less
Web App Attack
๐บ๐ธ
mnsf
2026-08-27 12:06:02
(4 days ago)
Scanning/Probing (24)
Brute-Force
Web App Attack