๐ฌ๐ง
consul.to
2026-04-04 09:25:41
(5 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-04-04 09:17:58
(5 months ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-04-03 05:14:58
(5 months ago)
19 attacks on VC URLs, env grabbing URLs:
GET /.git/config HTTP/1.1
GET /.vercel/.env.production.loc ...
show more
19 attacks on VC URLs, env grabbing URLs:
GET /.git/config HTTP/1.1
GET /.vercel/.env.production.local HTTP/1.1
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-03 02:57:34
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 91.234.7.0 (dedicated.vsys.host): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 91.234.7.0 (dedicated.vsys.host): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 22:57:26.962249 2026] [security2:error] [pid 22531:tid 22531] [client 91.234.7.0:59431] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bryanthebusinessmanager.org"] [uri "/.env.local"] [unique_id "ac8sliW-3WpOGDQYtYMmhgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 02:22:09
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 91.234.7.0 (dedicated.vsys.host): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 91.234.7.0 (dedicated.vsys.host): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 22:22:04.874998 2026] [security2:error] [pid 23644:tid 23644] [client 91.234.7.0:13161] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brigittecavanagh.com"] [uri "/.env.local"] [unique_id "ac8kTPtU80dPzNRfXkE7uQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
konseptit
2026-04-03 02:03:56
(5 months ago)
(mod_security) mod_security triggered on hostname [redacted] 91.234.7.0 (UA/Ukraine/dedicated.vsys.h ...
show more
(mod_security) mod_security triggered on hostname [redacted] 91.234.7.0 (UA/Ukraine/dedicated.vsys.host)
show less
SQL Injection
Anonymous
2026-04-03 01:50:56
(5 months ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
Matthew Ping
2026-04-03 01:30:01
(5 months ago)
ModSecurity rule 949110 triggered on wp3. Web application attack blocked by CSF/LFD.
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-02 23:42:55
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 91.234.7.0 (dedicated.vsys.host): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 91.234.7.0 (dedicated.vsys.host): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 19:42:48.395439 2026] [security2:error] [pid 13955:tid 13955] [client 91.234.7.0:54119] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boatmoldremover.com"] [uri "/.env.local"] [unique_id "ac7--G2VjOgU0r_DWLUt1QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-02 23:06:24
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 91.234.7.0 (dedicated.vsys.host): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 91.234.7.0 (dedicated.vsys.host): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 19:06:18.907988 2026] [security2:error] [pid 7220:tid 7220] [client 91.234.7.0:50711] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blosoms.org"] [uri "/.env.local"] [unique_id "ac72as-o3m8jPrXaanJyswAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
www.winos.me
2026-04-02 23:02:51
(5 months ago)
Banned due to high error rate on HTTP/1.1 protocol
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-02 22:41:44
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 91.234.7.0 (dedicated.vsys.host): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 91.234.7.0 (dedicated.vsys.host): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 18:41:41.055162 2026] [security2:error] [pid 17165:tid 17165] [client 91.234.7.0:39191] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blog.didemozbek.com.pist.org.tr"] [uri "/.env.example"] [unique_id "ac7wpRGfMwV0sSMuCFZAowAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-04-02 22:37:26
(5 months ago)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-02 22:26:21
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 91.234.7.0 (dedicated.vsys.host): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 91.234.7.0 (dedicated.vsys.host): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 18:26:13.459532 2026] [security2:error] [pid 2412:tid 2412] [client 91.234.7.0:18485] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blindshine.com"] [uri "/.env.local"] [unique_id "ac7tBcP1wGs7dYZSqB07ZAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Blexyel
2026-04-02 22:24:52
(5 months ago)
91.234.7.0 - - [02/Apr/2026:22:24:48 +0000] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 (Wi ...
show more
91.234.7.0 - - [02/Apr/2026:22:24:48 +0000] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Brute-Force
Web App Attack