Anonymous
2026-07-28 16:32:10
(39 minutes ago)
92.60.77.17 - - [28/Jul/2026:16:32:09 +0000] "GET /.git/config HTTP/1.1" 404 2809 "-" "osee2unifiedR ...
show more
92.60.77.17 - - [28/Jul/2026:16:32:09 +0000] "GET /.git/config HTTP/1.1" 404 2809 "-" "osee2unifiedRelease/1466 osee2unifiedReleaseVersion/6.9.1 Mozilla/5.0 (iPhone; CPU iPhone OS 12_4 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-07-28 16:20:49
(50 minutes ago)
trolling for resource vulnerabilities
Web App Attack
๐ง๐ท
mateus.vicente
2026-07-28 15:17:54
(1 hour ago)
[2026-07-28T15:17:54Z] Requests to sensitive Apache endpoints and path traversal patterns. (srv-app)
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-07-28 15:00:53
(2 hours ago)
Access to sensitive files detected w/ specific boundary.. Threat Score: 4.9/10 (MEDIUM). Confidence: ...
show more
Access to sensitive files detected w/ specific boundary.. Threat Score: 4.9/10 (MEDIUM). Confidence: 40%. CVSS v3.1: 2.9/10 (Low). CVSS Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N. Bayesian Probability: 40%. MITRE ATT&CK: T1016 (System Network Configuration Discovery). Tactic: TA0001. Freshness: Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-07-28 14:00:53
(3 hours ago)
Access to sensitive files detected w/ specific boundary.. Threat Score: 5/10 (MEDIUM). Confidence: 4 ...
show more
Access to sensitive files detected w/ specific boundary.. Threat Score: 5/10 (MEDIUM). Confidence: 40%. CVSS v3.1: 2.9/10 (Low). CVSS Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N. Bayesian Probability: 40%. MITRE ATT&CK: T1016 (System Network Configuration Discovery). Tactic: TA0001. Freshness: Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-07-28 13:00:52
(4 hours ago)
Access to sensitive files detected w/ specific boundary.. Threat Score: 5.2/10 (MEDIUM). Confidence: ...
show more
Access to sensitive files detected w/ specific boundary.. Threat Score: 5.2/10 (MEDIUM). Confidence: 40%. CVSS v3.1: 2.9/10 (Low). CVSS Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N. Bayesian Probability: 40%. MITRE ATT&CK: T1016 (System Network Configuration Discovery). Tactic: TA0001. Freshness: Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-07-28 12:00:09
(5 hours ago)
Access to sensitive files detected w/ specific boundary.. Threat Score: 5.9/10 (MEDIUM). Reported by ...
show more
Access to sensitive files detected w/ specific boundary.. Threat Score: 5.9/10 (MEDIUM). Reported by TangerangKota-CSIRT
show less
Hacking
Web App Attack
๐บ๐ธ
CBJ
2026-07-27 18:17:55
(22 hours ago)
fail2ban: apache-filepath-recon
...
Web App Attack
๐ฟ๐ฆ
conure
2026-07-27 18:02:40
(23 hours ago)
csagent: score 15.4: secrets grab x2, 404 noise floor x2; 1 domain(s) in 2m0s
Web App Attack
๐ฉ๐ช
Admins@FBN
2026-07-27 17:55:06
(23 hours ago)
FW-PortScan: Traffic Blocked srcport=44552 dstport=443
Port Scan
๐ฉ๐ช
ghostwarriors
2026-07-27 17:50:43
(23 hours ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
ALPHANET
2026-07-27 17:31:50
(23 hours ago)
web exploits
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 17:15:09
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 92.60.77.17 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 92.60.77.17 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 13:15:04.884028 2026] [security2:error] [pid 696811:tid 696811] [client 92.60.77.17:49708] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.92"] [uri "/.git/config"] [unique_id "ameSGJrekxrl4FsWa3CqkAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
OptimusGO
2026-07-27 15:47:39
(1 day ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-07-27 16:47:39 UTC
Log evidence:
92.60.77.17 - - [27/Jul/2026:16:47:38 +0100] "GET /.git/config HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.143 YaBrowser/19.7.2.516 Yowser/2.5 Safari/537.36"
07/27/2026-16:47:39.042346 [wDrop] [**] [1:7000910:1] FINSERV CRITICAL: Git Repository Access [**] [Classification: Web Application Attack] [Priority: 1] {TCP} 92.60.77.17:48460 -> 185.127.18.66:80
07/27/2026-16:47:39.042346 [**] [1:1000112:1] SECURITY CRITICAL: Git Config File Access Attempt [**] [Classification: Attempted Administrator Privilege Gain] [Priority: 1] {TCP} 92.60.77.17:48460 -> 185.127.18.66:80
show less
Port Scan
Brute-Force
๐บ๐ธ
jkhorvath.com
2026-07-27 15:38:44
(1 day ago)
Request for URL /.git/config
Phishing
Brute-Force
Web App Attack