๐ซ๐ท
ACE-INFORMATIQUE.NC
2026-06-12 19:00:06
(3 minutes ago)
Web App Attack blocked by Fail2ban
Web App Attack
๐ฎ๐ฉ
soc-yk
2026-06-12 10:42:14
(8 hours ago)
Type: suspicious_network_activity
Risk: 96
Events: 38
Evidence:
- Persistent suspicious network act ...
show more
Type: suspicious_network_activity
Risk: 96
Events: 38
Evidence:
- Persistent suspicious network activity detected
- Repeated hostile operational behavior observed
- Threat escalation behavior observed
show less
Port Scan
Hacking
๐บ๐ธ
Matthew Ping
2026-06-12 09:00:01
(10 hours ago)
ModSecurity rule 949110 triggered on wp2. Web application attack blocked by CSF/LFD.
Web App Attack
Hacking
๐ฌ๐ง
Aetherweb Ark
2026-06-12 04:12:26
(14 hours ago)
(mod_security) mod_security (id:949110) triggered by 88.151.33.144 (-): N in the last X secs
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 03:50:15
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 88.151.33.144 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 88.151.33.144 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 23:50:08.606256 2026] [security2:error] [pid 12873:tid 12873] [client 88.151.33.144:46242] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vintagetejas.cajunfriedturkey.com"] [uri "/.env.example"] [unique_id "aiuB8Dt4V21RxmUigA7ebgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-12 03:47:21
(15 hours ago)
(caddyscan) Scanner path probe from 88.151.33.144 (NL/The Netherlands/-): 5 in the last 3600 secs; P ...
show more
(caddyscan) Scanner path probe from 88.151.33.144 (NL/The Netherlands/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 88.151.33.144 - - [12/Jun/2026:03:47:19 +0000] "GET /.env HTTP/1.1"
[REDACTED] 200 2627 88.151.33.144 - - [12/Jun/2026:03:47:19 +0000] "GET /.aws/credentials HTTP/1.1"
[REDACTED] 200 2627 88.151.33.144 - - [12/Jun/2026:03:47:20 +0000] "GET /api/.env HTTP/1.1"
[REDACTED] 200 2627 88.151.33.144 - - [12/Jun/2026:03:47:20 +0000] "GET /.env.local HTTP/1.1"
[REDACTED] 200 2627 88.151.33.144 - - [12/Jun/2026:03:47:20 +0000] "GET /backend/.env HTTP/1.1"
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-06-12 03:29:54
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 88.151.33.144 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 88.151.33.144 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 23:29:47.538359 2026] [security2:error] [pid 12907:tid 12907] [client 88.151.33.144:58912] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vintageamptubes.ink2wear.com"] [uri "/.env"] [unique_id "ait9K0NT_G1eYubH5oUdpwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
debestelapp
2026-06-12 03:10:07
(15 hours ago)
Web App Attack
๐ซ๐ท
masterguru
2026-06-12 02:53:33
(16 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
Anonymous
2026-06-12 02:09:18
(16 hours ago)
Portscan: TCP/80 (4x), TCP/443 (3x)
Port Scan
๐ฉ๐ช
BlueWire Hosting
2026-06-12 02:05:54
(16 hours ago)
Bad bot ignoring robot.txt
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-12 02:02:24
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 88.151.33.144 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 88.151.33.144 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 22:02:20.520731 2026] [security2:error] [pid 13447:tid 13447] [client 88.151.33.144:50990] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vincentmonaco.com"] [uri "/.env.example"] [unique_id "aitorK8IYfYaYs75Xi96XQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
raph
2026-06-12 02:00:05
(17 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 01:37:26
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 88.151.33.144 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 88.151.33.144 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 21:37:22.112423 2026] [security2:error] [pid 18456:tid 18456] [client 88.151.33.144:45696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vinabelle.38floorsupply.com"] [uri "/api/.env"] [unique_id "aiti0luNqQwln6E3VcUHLgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-12 01:18:10
(17 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack