πΉπ·
neron
2026-08-03 08:29:42
(4 weeks ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
πΉπ·
neron
2026-08-02 02:16:22
(1 month ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
πΉπ·
neron
2026-07-27 02:19:46
(1 month ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
Anonymous
2026-07-24 05:24:03
(1 month ago)
"GET /.env HTTP/1.1"
Hacking
Web App Attack
π«π·
masterguru
2026-07-24 00:26:34
(1 month ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
π©πͺ
Vegascosmetics
2026-07-24 00:03:38
(1 month ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.env (Match: /.env)
show less
Hacking
Brute-Force
Web App Attack
πΊπΈ
conrad10781
2026-07-23 23:21:15
(1 month ago)
nginx-dot-env
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-23 12:42:12
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.131.194.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.131.194.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 08:42:05.980521 2026] [security2:error] [pid 2799953:tid 2799953] [client 45.131.194.240:65233] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "beautifulnoise.com"] [uri "/.env"] [unique_id "amIMHdjQQXZWVmS4py0LnwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
BlueWire Hosting
2026-07-23 12:17:52
(1 month ago)
Probing websites for vulnerabilities
Web App Attack
π©πͺ
todix
2026-07-23 11:34:20
(1 month ago)
Web App Attack Exploid from 45.131.194.240
Web App Attack
π«π·
masterguru
2026-07-23 11:03:57
(1 month ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-23 08:43:30
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.131.194.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.131.194.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 04:43:23.694561 2026] [security2:error] [pid 2093640:tid 2093649] [client 45.131.194.240:51183] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mailme.name"] [uri "/.env"] [unique_id "amHUK4GDHKbOj4NLMI8l_gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-23 06:13:16
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.131.194.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.131.194.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 02:13:11.502545 2026] [security2:error] [pid 235036:tid 235036] [client 45.131.194.240:36065] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "loudenlow.com"] [uri "/.env"] [unique_id "amGw9wg3hAU_30wAVI2EjAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-23 05:34:32
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.131.194.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.131.194.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 01:34:25.528413 2026] [security2:error] [pid 2130962:tid 2130962] [client 45.131.194.240:39759] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greenlight.us"] [uri "/.env"] [unique_id "amGn4Qql8B2SfPOLBhZ9QgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-23 04:25:22
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.131.194.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.131.194.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 00:25:17.537718 2026] [security2:error] [pid 1722671:tid 1722671] [client 45.131.194.240:46607] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "asli.cafe"] [uri "/.env"] [unique_id "amGXrXvKr-PIOzI26WRX_wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack