π΅π±
Budyn
2026-08-17 20:31:43
(2 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: app.teddypot.space | URI: /actuator/gateway/routes | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] ) | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
πΊπΈ
Rocky Mountain Bioengineering Symposium
2026-08-17 09:54:41
(12 hours ago)
[Mon Aug 17 03:54:41.021385 2026] [authz_core:error] [pid 122895:tid 140697612084800] [client 216.73 ...
show more
[Mon Aug 17 03:54:41.021385 2026] [authz_core:error] [pid 122895:tid 140697612084800] [client 216.73.216.20:49445] AH01630: client denied by server configuration: /var/www/public_html/contest/robots.txt
[Mon Aug 17 03:54:41.025015 2026] [authz_core:error] [pid 122895:tid 140697612084800] [client 216.73.216.20:49445] AH01630: client denied by server configuration: /var/www/public_rsrc/assets/RMBS-Server-Error.html
[Mon Aug 17 03:54:41.055794 2026] [authz_core:error] [pid 122895:tid 140697612084800] [client 216.73.216.20:49445] AH01630: client denied by server configuration: /var/www/public_html/contest/
...
show less
Bad Web Bot
π«π·
Campus France
2026-08-16 15:36:02
(1 day ago)
...
Brute-Force
π³π±
Site.eu
2026-08-16 13:03:38
(1 day ago)
Excessive multi-domain requests
Brute-Force
πͺπΈ
librebit
2026-08-13 05:25:09
(4 days ago)
Brute force
Brute-Force
π¬π§
Greg Poulson
2026-08-13 01:44:02
(4 days ago)
Our website was hit by this DDOS at a rate of 22 in 5 minutes.
DDoS Attack
Web Spam
Brute-Force
π¦πΊ
screwlooseit.com.au
2026-08-12 21:42:43
(5 days ago)
Blocked by CSF 13 firewall - Rule: US/United States/-
Web App Attack
πΊπΈ
SX Communications
2026-08-11 20:41:08
(6 days ago)
Blocked abusive HTTP application-layer DoS / botnet traffic from 216.73.216.20: traffic from this ad ...
show more
Blocked abusive HTTP application-layer DoS / botnet traffic from 216.73.216.20: traffic from this address continues high-cost dynamic page and feed requests at abusive rates via TCP/HTTPS despite edge block responses. Likely compromised end-user host.
show less
DDoS Attack
Bad Web Bot
Exploited Host
π¬π·
setupgr
2026-08-11 10:20:07
(6 days ago)
(mod_security) mod_security (id:11000010) triggered by 216.73.216.20 (US/United States/Ohio/Columbus ...
show more
(mod_security) mod_security (id:11000010) triggered by 216.73.216.20 (US/United States/Ohio/Columbus/-/[AS16509 AMAZON-02]): 1 in the last 86400 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Tue Aug 11 13:20:04.965802 2026] [security2:error] [pid 2064837:tid 2064857] [remote 216.73.216.20:38779] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "ClaudeBot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "114"] [id "11000010"] [msg "BLOCKED BOT: ClaudeBot on doityourself.gr"] [severity "ALERT"] [hostname "doityourself.gr"] [uri "/robots.txt"] [unique_id "anr3VOhmH3KDCdj10LOe5wABTxM"]
show less
Port Scan
πͺπΈ
librebit
2026-08-11 06:30:07
(6 days ago)
Brute force
Brute-Force
π΅π±
sefinek.net
2026-08-09 10:23:00
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/2 (GET) | Endpoint ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/2 (GET) | Endpoint: /sitemap-images.xml | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] ) β’ Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
π΅π±
sefinek.net
2026-08-09 04:39:24
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/2 (GET) | Endpoint ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/2 (GET) | Endpoint: / | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] ) β’ Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
π«π·
EvoX
2026-08-08 21:43:49
(1 week ago)
π‘οΈ Honeypot [bsts-tpot-hive]: HTTP/1.1 request on 18789
GET /sitemap.xml
User-Agent: Mozilla/5.0 Ap ...
show more
π‘οΈ Honeypot [bsts-tpot-hive]: HTTP/1.1 request on 18789
GET /sitemap.xml
User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )
Accept: */*
Accept-Encoding: gzip, br, zstd, deflate; 18789 [1] TCP
show less
Hacking
Bad Web Bot
πΉπ·
ycoskun41
2026-08-08 11:59:05
(1 week ago)
fail2ban: plesk-modsecurity jail on genckocaeli.com
Web App Attack
π³π±
Site.eu
2026-08-08 08:44:42
(1 week ago)
Excessive multi-domain requests
Brute-Force