I created a new TLS cert for a subdomain for internal use. 10 minutes later Claude scraped the server. 7 minutes after that ChatGPT scraped it.
They're REALLY thirsty aren't they... only two random bots trying to steal credentials/auto-hack scanned it before them. Google/Grok didn't bother at all.
Then of the dozens of malicious scans I got in the first 24h, the worst one (over half the request log for that day just from one IP trying to steal credentials) came from a Google Cloud IP...