Report for IP: 91.239.78.39

Threat LevelMEDIUM40/1001 rule type
2 incidents on record · persistent 12-day campaign · last seen 9d ago
PTR hirden.lunaredgeradiantflare.net
Org / ASN Vsys UA Colo10
Country 🇺🇦 Ukraine
City Kyiv, Kyiv City
Timezone Europe/Kyiv

Attack Analysis

🇺🇦 Ukraine · Kyiv · 6698 · VSYS-UA-COLO10
Git Repository Exposure Probe
This IP requested the /.git/ directory, attempting to download source code, commit history, database credentials, and API keys from an accidentally exposed Git repository. Automated tools can reconstruct an entire codebase from an exposed .git folder. No legitimate client ever requests this path.

Reports (2)

Date Severity Description
23 Jul 2026 - 13:30 high Web: Git repo exposure probe
11 Jul 2026 - 20:43 high Web: Git repo exposure probe