๐ซ๐ท
suble.org
2026-09-02 15:42:03
(5 minutes ago)
[Wed Sep 02 17:42:03.096582 2026] [access_compat:error] [pid 2379669:tid 2379669] [client 87.58.153. ...
show more
[Wed Sep 02 17:42:03.096582 2026] [access_compat:error] [pid 2379669:tid 2379669] [client 87.58.153.139:41182] AH01797: client denied by server configuration: /var/www/vhosts/suble.org/cloud/config/credentials.yml.enc
[Wed Sep 02 17:42:03.352291 2026] [access_compat:error] [pid 2379664:tid 2379664] [client 87.58.153.139:41422] AH01797: client denied by server configuration: /var/www/vhosts/suble.org/cloud/config/credentials.yml.enc
[Wed Sep 02 17:42:03.352290 2026] [access_compat:error] [pid 2389989:tid 2389989] [client 87.58.153.139:41438] AH01797: client denied by server configuration: /var/www/vhosts/suble.org/cloud/config/.env
[Wed Sep 02 17:42:03.360606 2026] [access_compat:error] [pid 2379678:tid 2379678] [client 87.58.153.139:41452] AH01797: client denied by server configuration: /var/www/vhosts/suble.org/cloud/config/.env
...
show less
Web App Attack
๐ฉ๐ช
klaus_ph
2026-09-02 14:23:57
(1 hour ago)
[Wed Sep 02 16:23:42.774439 2026] [php:error] [pid 1365471] [client 87.58.153.139:53346] script '/va ...
show more
[Wed Sep 02 16:23:42.774439 2026] [php:error] [pid 1365471] [client 87.58.153.139:53346] script '/var/www/html/wp-config.php' not found or unable to stat
...
show less
Brute-Force
๐ฉ๐ช
ghostwarriors
2026-09-02 12:50:12
(2 hours ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
RogueAutomata
2026-09-02 12:37:56
(3 hours ago)
Detected malicious request: GET /
Detections triggered: Access via IP addr (v4)
Web App Attack
๐จ๐ฑ
ovallevelasquezanibal
2026-09-02 12:00:14
(3 hours ago)
Detectado por Wazuh SIEM en api-ux.com | Alertas: 275 | Nivel max: 10 | Agentes: web-apiux-2025 | Su ...
show more
Detectado por Wazuh SIEM en api-ux.com | Alertas: 275 | Nivel max: 10 | Agentes: web-apiux-2025 | Suspicious URL access.; Web server 400 error code.; Multiple web server 400 error codes from same source ip.
show less
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-02 11:46:02
(4 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.env (Match: /.env)
show less
Hacking
Brute-Force
Web App Attack
๐ฉ๐ช
Melle
2026-09-02 11:32:02
(4 hours ago)
Blocked by CrowdSec | Scenario: crowdsecurity/http-sensitive-files | 87.58.153.139 triggered 5 event ...
show more
Blocked by CrowdSec | Scenario: crowdsecurity/http-sensitive-files | 87.58.153.139 triggered 5 events | Detected: 2026-09-02T11:32:02.246149132Z
show less
Web App Attack
Hacking
๐ณ๐ฑ
SysAdmin Dylan
2026-09-02 10:26:29
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 87.58.153.139 (FI/Finland/87-58-153-139.de-fra1 ...
show more
(mod_security) mod_security (id:210492) triggered by 87.58.153.139 (FI/Finland/87-58-153-139.de-fra1.upcloud.host): 10 in the last 3600 secs
show less
Brute-Force
๐ช๐ธ
Yoeph
2026-09-02 10:00:00
(5 hours ago)
Malicious probe on /public/.env (Blocked 403) by TurnoControlPro Web Shield
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
initsol
2026-09-02 09:41:51
(6 hours ago)
[Wed Sep 02 11:41:51.019282 2026] [authz_core:error] [pid 1623217:tid 1623217] [client 87.58.153.139 ...
show more
[Wed Sep 02 11:41:51.019282 2026] [authz_core:error] [pid 1623217:tid 1623217] [client 87.58.153.139:40134] AH01630: client denied by server configuration: /var/www/
[Wed Sep 02 11:41:51.026680 2026] [authz_core:error] [pid 1623217:tid 1623217] [client 87.58.153.139:40134] AH01630: client denied by server configuration: /var/www/.env.dev
[Wed Sep 02 11:41:51.033242 2026] [authz_core:error] [pid 1623217:tid 1623217] [client 87.58.153.139:40134] AH01630: client denied by server configuration: /var/www/.aws
...
show less
Brute-Force
Anonymous
2026-09-02 09:07:25
(6 hours ago)
2026/09/02 09:07:23 [error] 3174953#3174953: *149385 [client 87.58.153.139] ModSecurity: Access deni ...
show more
2026/09/02 09:07:23 [error] 3174953#3174953: *149385 [client 87.58.153.139] ModSecurity: Access denied with code 403 (phase 2). Matched "Operator `Ge' with parameter `5' against variable `TX:BLOCKING_INBOUND_ANOMALY_SCORE' (Value: `5' ) [file "/usr/local/owasp-modsecurity-crs-4.11.0/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "222"] [id "949110"] [rev ""] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [data ""] [severity "0"] [ver "OWASP_CRS/4.29.0"] [maturity "0"] [accuracy "0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "94.72.101.158"] [uri "/.env.backup.old"] [unique_id "178834004360.910773"] [ref ""], client: 87.58.153.139, server: srv.ingeltechgh.com, request: "GET /.env.backup.old HTTP/1.1", host: "94.72.101.158"
2026/09/02 09:07:23 [error] 3174953#3174953: *149385 [client 87.58.153.139] ModSecurity: Access denied with code 403 (phase 2). Matched "Operator `Ge' with parameter `5' against variable `TX:BLOCKING_INBOUND_ANOMALY_SCORE' (Value: `5' ) [file "/usr
...
show less
Brute-Force
๐จ๐ญ
m_vlasov
2026-09-02 08:19:32
(7 hours ago)
SSH/Telnet honeypot: 0 login attempts, 0 sessions, 0 shell commands.
Hacking
๐ฉ๐ช
Uwe Sarpe
2026-09-02 08:16:49
(7 hours ago)
[Wed Sep 02 10:16:48.828077 2026] [access_compat:error] [pid 151845:tid 151845] [client 87.58.153.13 ...
show more
[Wed Sep 02 10:16:48.828077 2026] [access_compat:error] [pid 151845:tid 151845] [client 87.58.153.139:35176] AH01797: client denied by server configuration: /var/www/backups
[Wed Sep 02 10:16:48.832397 2026] [access_compat:error] [pid 151845:tid 151845] [client 87.58.153.139:35176] AH01797: client denied by server configuration: /var/www/info.php
[Wed Sep 02 10:16:48.843786 2026] [access_compat:error] [pid 155532:tid 155532] [client 87.58.153.139:35192] AH01797: client denied by server configuration: /var/www/.env
[Wed Sep 02 10:16:48.868142 2026] [access_compat:error] [pid 155532:tid 155532] [client 87.58.153.139:35192] AH01797: client denied by server configuration: /var/www/server
[Wed Sep 02 10:16:48.869101 2026] [access_compat:error] [pid 155531:tid 155531] [client 87.58.153.139:35260] AH01797: client denied by server configuration: /var/www/.env.development
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
Catalin Negru
2026-09-02 06:55:21
(8 hours ago)
2026-09-02 09:55:20,720 fail2ban.actions [1796604]: NOTICE [apache-scan] Ban 87.58.153.139
2 ...
show more
2026-09-02 09:55:20,720 fail2ban.actions [1796604]: NOTICE [apache-scan] Ban 87.58.153.139
2026-09-02 09:55:20,834 fail2ban.actions [1796604]: NOTICE [apache-dirscan] Ban 87.58.153.139
2026-09-02 09:55:20,909 fail2ban.actions [1796604]: NOTICE [web-scanner] Ban 87.58.153.139
2026-09-02 09:55:20,911 fail2ban.actions [1796604]: NOTICE [laravel-env] Ban 87.58.153.139
2026-09-02 09:55:21,030 fail2ban.actions [1796604]: NOTICE [apache-404] Ban 87.58.153.139
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
mouafiq
2026-09-02 06:46:58
(9 hours ago)
2026-09-02 06:46:58,356 27882 INFO ? werkzeug: 87.58.153.139 - - [02/Sep/2026 06:46:58] "GET /resour ...
show more
2026-09-02 06:46:58,356 27882 INFO ? werkzeug: 87.58.153.139 - - [02/Sep/2026 06:46:58] "GET /resources/.env HTTP/1.0" 404 - 1 0.003 0.010
2026-09-02 06:46:58,383 27882 INFO ? werkzeug: 87.58.153.139 - - [02/Sep/2026 06:46:58] "GET /storage/.env HTTP/1.0" 404 - 1 0.002 0.016
2026-09-02 06:46:58,390 27880 INFO ? werkzeug: 87.58.153.139 - - [02/Sep/2026 06:46:58] "GET /sites/default/settings.php HTTP/1.0" 404 - 1 0.008 0.015
2026-09-02 06:46:58,410 27882 INFO ? werkzeug: 87.58.153.139 - - [02/Sep/2026 06:46:58] "GET /backup/.env HTTP/1.0" 404 - 1 0.006 0.018
2026-09-02 06:46:58,416 27880 INFO ? werkzeug: 87.58.153.139 - - [02/Sep/2026 06:46:58] "GET /.env.bak HTTP/1.0" 404 - 1 0.002 0.021
show less
Brute-Force
SSH