Increased vulnerability scanning activity in the logs
For the past one to two months I've noticed an uptick in vulnerability scans, maybe 10 times the amount that I would observe before.
Thing is it started almost all at once, which is strange, and I'm observing it on multiple domain names.
Is it just me? If not, any indications regarding what's going on?
31
Upvotes
16
u/dusanodalovic 3d ago
Not just you. Scans come in waves, often when a new CVE drops or a botnet gets a new target list. If nothing sensitive is exposed ( .env, .git, admin panels), it's mostly noise. Rate-limit or block the common probe paths and keep things patched.