Threat LevelMEDIUM39/1003 rule types
6 incidents on record · 3 rule types · last seen 9d ago
| PTR | N/A |
| Org / ASN | Rolandas Uscila |
| Country | 🇬🇧 United Kingdom |
| City | Newport, Wales |
| Timezone | Europe/London |
Attack Analysis
.env File Exposure Probe
This IP requested a .env file (or a variant like .env.local, .env.production) — files that commonly contain database credentials, API keys, and other secrets for a web application. No legitimate visitor ever requests this path; it is exclusively probed by attackers hunting for leaked configuration.
local blocklist
Git Repository Exposure Probe
This IP requested the /.git/ directory, attempting to download source code, commit history, database credentials, and API keys from an accidentally exposed Git repository. Automated tools can reconstruct an entire codebase from an exposed .git folder. No legitimate client ever requests this path.
Reports (6)
| Date | Severity | Description |
|---|---|---|
| 20 Sep 2026 - 14:46 | high | Web: Git repo exposure probe |
| 20 Sep 2026 - 14:19 | low | local blocklist |
| 20 Sep 2026 - 13:18 | low | local blocklist |
| 20 Sep 2026 - 12:18 | low | local blocklist |
| 20 Sep 2026 - 11:17 | low | local blocklist |
| 20 Sep 2026 - 10:17 | medium | Query Guard — Path Dotenv Exposed |
EagleEye Intelligence