Anonymous
2026-08-27 23:48:04
(12 hours ago)
Web Server Enforcement Violation.
Hacking
Anonymous
2026-08-27 23:20:43
(12 hours ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐ซ๐ท
omartin
2026-08-27 22:29:18
(13 hours ago)
Critical Vulnerability Scan detected
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
kosada.com
2026-08-27 20:51:11
(15 hours ago)
Web vulnerability probing (bogus request)
Web App Attack
๐ธ๐ฌ
itachi1706
2026-08-27 19:59:03
(16 hours ago)
8.235.21.16 - - [28/Aug/2026:03:59:02 +0800] "\x16\x03\x01\x00\xEC\x01\x00\x00\xE8\x03\x03\xB4?\xE4\ ...
show more
8.235.21.16 - - [28/Aug/2026:03:59:02 +0800] "\x16\x03\x01\x00\xEC\x01\x00\x00\xE8\x03\x03\xB4?\xE4\xE7\x82\xA6\xCE\x87R\xE1\x8C\x8D\x848\xB1\x05Ue\x13\x0E\x8D\xC7\x22\xE9s`\xAA\x9B*$\xDC\xD7 SD\xB2N\x03\xA0t\x94\x82\x8F6\x1D\x04\xC4K\xF0eA\xEC\x91\xBEL\x1A\xAB\x91\x04\xC9" 400 166 "-" "-"
8.235.21.16 - - [28/Aug/2026:03:59:02 +0800] "\x16\x03\x01\x00\xEC\x01\x00\x00\xE8\x03\x03j\x03\xD7`\xBA\xB0\x1CqBe[\x9D" 400 166 "-" "-"
8.235.21.16 - - [28/Aug/2026:03:59:02 +0800] "\x16\x03\x01\x00\xEC\x01\x00\x00\xE8\x03\x03t\xF9\xA6\xB2\xEC?G\xDB\xBA\xD8\x1By\x9B7\xA9\xD1\x81Xm\xAD\xBDW>\x01'\x1DE\xEE\xBC\xDE\xCDF \x9F\x80\xAAU\xACq\xED\xD3\xFBC\xE7\xD5>\xEA" 400 166 "-" "-"
8.235.21.16 - - [28/Aug/2026:03:59:02 +0800] "\x16\x03\x01\x00\xEC\x01\x00\x00\xE8\x03\x03\xAA:\x8B*\x90\xAC\x81\xAE\x18\x1A\xF4\x8B\xCB\xD8T\x85\xEC\xDAH\xD3w\xC0\xE9\xD2\xB1`\x84\xA2H\xB0+\x8E \xA5\xD9\xF9v\x9AO\x9F\xAD\x8F\xD1\xD8\x90" 400 166 "-" "-"
8.235.21.16 - - [28/Aug/2026:03:59:02 +0800] "\x16\x03\x01\x00\xEC\x01\
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 18:49:35
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.235.21.16 (16.21.235.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.235.21.16 (16.21.235.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 14:49:29.075108 2026] [security2:error] [pid 8782:tid 8782] [client 8.235.21.16:38040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shannonmatter.com"] [uri "/api/.git/config"] [unique_id "apCGueawKZne3r_5TU-MSgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 16:44:57
(19 hours ago)
[osotir.org] httpd-config-scan: sites=www.eopb.gr; logs=/var/log/httpd/domains/eopb.gr.log; samples= ...
show more
[osotir.org] httpd-config-scan: sites=www.eopb.gr; logs=/var/log/httpd/domains/eopb.gr.log; samples=/www/.git/config | /api/.git/config | /src/.git/config
show less
Hacking
Web App Attack
๐ฉ๐ช
arnisolutions
2026-08-27 16:42:05
(19 hours ago)
Vulnerability scanning (requests for admin panels, shells, backup files etc.) against a production s ...
show more
Vulnerability scanning (requests for admin panels, shells, backup files etc.) against a production server. Observed on 1 day(s) between 2026-08-27 and 2026-08-27 (UTC). Sample request: GET /htdocs/.git/config HTTP/1.1
show less
Web App Attack
Hacking
๐ฉ๐ช
big-cloud.nl
2026-08-27 14:14:25
(21 hours ago)
Try to access /src/.git/config
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-27 13:20:03
(22 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐ณ๐ฟ
Antinson
2026-08-27 12:57:47
(23 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐ฎ๐น
VHosting
2026-08-27 11:35:03
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐จ๐ญ
Origon
2026-08-27 10:49:20
(1 day ago)
http-sensitive-files - IP: 8.235.21.16 - time="2026-08-27T12:49:19+02:00" level=info msg="(555f66b4 ...
show more
http-sensitive-files - IP: 8.235.21.16 - time="2026-08-27T12:49:19+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 8.235.21.16 (US/396982) : 4h ban on Ip 8.235.21.16" module=db
show less
Web App Attack
๐ซ๐ท
masterguru
2026-08-27 10:47:49
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 10:22:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 8.235.21.16 (16.21.235.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.235.21.16 (16.21.235.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:21:54.661790 2026] [security2:error] [pid 22441:tid 22441] [client 8.235.21.16:54756] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dmbarlow.us"] [uri "/backend/.git/config"] [unique_id "apAPwgcx1hI8l1BDAoEi-gAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack