Global Threat Intelligence. Real-Time Protection.
Security Center combines site-level protection, bot detection, incident visibility and global threat intelligence into a single lightweight defense layer for modern web projects.
Live-Styled Worldwide Threat Intelligence Map
Apple Review Test Mode is active. All threat routes, live visitors, map nodes and traffic signals are generated from simulated TEST-NET data only.
Latest Active Threats
Continuously updated security narratives from the public intelligence layer.
Credential Stuffing Wave
Automated login pattern detected and mitigated across protected endpoints.
Botnet Probe Cluster
Distributed scanner signatures matched bot and headless-browser detection rules.
Sensitive File Probe
Requests targeting configuration and backup files were identified by the sensitive probe module.
SQL Injection Attempt
Injection payload signatures were neutralized before reaching the application layer.
Security Center Protection Modules
Every module shown here is fed from the Security Center module registry or the admin-managed public content source.
Auto Block Live Traffic Probes
Automatically blocks IP addresses generating too many requests.
Auto Block Login Attacks
Automatically blocks IP addresses with repeated failed login attempts.
Auto Block Repeated Medium Risks
Automatically blocks IP addresses that repeatedly trigger medium-risk events.
Auto Resolve After Block
Marks related high-risk events as resolved after the IP is blocked.
Automatic IP Blocking
Automatically blocks high-risk intrusion attempts.
Security Guardian Automation
Automatically analyzes recent security events and blocks dangerous IP addresses.
Bad Bot Protection
Detects scanners, curl, wget, nikto, sqlmap, headless browsers and suspicious automation tools.
Fake Search Bot Protection
Flags visitors claiming to be Google/Bing/Yandex/Yahoo/Apple/Baidu bots without reverse + forward DNS validation.
Headless Browser Detection
Flags headless Chrome, Playwright, Puppeteer, Selenium and empty user-agent automation.
Verified Search Bot Allowlist
Allows verified Google/Bing/Yandex/Yahoo/DuckDuckGo/Apple/Baidu search bots to crawl public pages without being treated as bad bots.
Anti-DevTools / F12 Deterrent
Discourages inspect actions by blocking common developer-tools shortcuts, right click and showing a restricted-mode overlay.
Protected Site Security Badge
Shows a configurable Security Center badge on protected website pages with first-entry, interval, schedule, duration, opacity, 9-position placement and custom icon controls.
View-Source Security Signature
Adds a Security Center HTML comment signature at the very top of protected page source.
Admin Activity Logging
Logs important admin POST/PUT/PATCH/DELETE actions.
Bot Detection Logging
Stores detected bot classifications and automation signals.
Live Traffic Logging
Stores visitor traffic separately from security events.
E-mail Notifications
Sends e-mail notification when configured and a threat is detected.
Telegram Notifications
Sends Telegram bot alerts for blocked / high-risk threats.
Command Injection Protection
Detects command execution payload patterns such as whoami, curl, wget, shell pipes and backticks.
Country Ban Protection
Blocks countries added to the country ban list when GeoIP data is available.
PHP Stream Abuse Protection
Detects php://, phar://, data://, expect:// and dangerous stream probes.
Path Traversal Protection
Detects ../, encoded traversal and sensitive OS file access attempts.
Proxy Header Detection
Flags requests with suspicious proxy forwarding headers.
SQL Injection Protection
Detects SQLi payloads, UNION SELECT, boolean based tests and DB timing attacks.
Sensitive File Probe Protection
Blocks .env, .git, backup, adminer, phpMyAdmin and config file probe attempts.
Spam Protection
Detects repeated links, bad words and common spam payloads in public forms.
XSS Protection
Detects script injection attempts in URLs, forms, cookies and raw request payloads.
AI Security Governance Layer
Reviews automatic blocks, detects false positives, finds missed threats and keeps an explainable decision history without touching ignore-list IP addresses.
Core Integrity Monitor
Stores trusted SHA-256 baselines for Security Center core files and reports changed, missing or newly added executable files.
Incident Response Center
Groups recent events by attacker IP, recommends operator actions and provides one-click block / resolve workflows.
Security Health Center
Audits installation health, runtime requirements, writable folders, hardening basics, alert channels and integration signals.
Security Test Lab
Runs safe internal simulations for SQLi, XSS, path traversal, command injection, bad bot and environment checks.
File Integrity / Malware Scanner
Admin-triggered root file scan for webshells, obfuscated loaders, exposed SQL dumps, leaked credentials and suspicious third-party outbound endpoints.
System Event Stream
Simulated Β· Apple Review Test Mode Β· window 48h
Enterprise-ready security visibility without heavy front-end payloads.
Designed for shared hosting and classic PHP projects as well as modern stacks. Public visuals stay lightweight while admin intelligence remains private inside Security Center.
- No real visitor tracking
- TEST-NET fake IP ranges
- Local simulated map/feed
- External IP lookups disabled