Microsoft-IIS 10.0
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035496454cff6045c5b6b93103fb6a07c113060c2bc33
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
GET /api/v1/alarm
GET /api/v1/alarm/count
GET /api/v1/alarm/{id}
GET /api/v1/beacon
GET /api/v1/device
GET /api/v1/device/{mac}
GET /api/v1/group
GET /api/v1/job
GET /api/v1/job/{id}
GET /api/v1/map
GET /api/v1/map/image/{id}
GET /api/v1/map/{id}
GET /api/v1/subscription
GET /api/v1/subscription/{accountId}
GET /api/v1/wakeup
GET /api/v1/wakeup/mapscontaining
GET /api/v1/wakeup/relative
GET /api/v1/wakeup/relative/all
GET /api/v1/wakeup/relative/{mac}
GET /api/v1/wakeup/relative/{mac}/{relativeMapId}
GET /api/v1/wakeup/{mac}
GET /api/v1/zone
GET /api/v1/zone/relative
POST /api/v1/deviceingroup
POST /api/v1/groupjob
POST /api/v1/login
Open service 20.105.216.40:443 · api.brt.ubiquicom.com
2026-01-23 00:07
HTTP/1.1 404 Not Found Content-Length: 0 Connection: close Date: Fri, 23 Jan 2026 00:07:35 GMT Server: Microsoft-IIS/10.0 Set-Cookie: ARRAffinity=024b4110f82a23b5bc2ef2bea37543995b6f2e9a3779ca177f3932e9a57adad2;Path=/;HttpOnly;Secure;Domain=api.brt.ubiquicom.com Set-Cookie: ARRAffinitySameSite=024b4110f82a23b5bc2ef2bea37543995b6f2e9a3779ca177f3932e9a57adad2;Path=/;HttpOnly;SameSite=None;Secure;Domain=api.brt.ubiquicom.com Request-Context: appId=cid-v1:8456fafe-a8ee-4165-b3dc-b18b7733f032 X-Powered-By: ASP.NET
Open service 20.105.216.40:443 · api.brt.ubiquicom.com
2026-01-09 11:52
HTTP/1.1 404 Not Found Content-Length: 0 Connection: close Date: Fri, 09 Jan 2026 11:53:54 GMT Server: Microsoft-IIS/10.0 Set-Cookie: ARRAffinity=024b4110f82a23b5bc2ef2bea37543995b6f2e9a3779ca177f3932e9a57adad2;Path=/;HttpOnly;Secure;Domain=api.brt.ubiquicom.com Set-Cookie: ARRAffinitySameSite=024b4110f82a23b5bc2ef2bea37543995b6f2e9a3779ca177f3932e9a57adad2;Path=/;HttpOnly;SameSite=None;Secure;Domain=api.brt.ubiquicom.com Request-Context: appId=cid-v1:8456fafe-a8ee-4165-b3dc-b18b7733f032 X-Powered-By: ASP.NET
Open service 20.105.216.40:80 · api.brt.ubiquicom.com
2026-01-03 06:07
HTTP/1.1 301 Moved Permanently Content-Length: 0 Connection: close Date: Sat, 03 Jan 2026 06:07:11 GMT Location: https://api.brt.ubiquicom.com/
Open service 20.105.216.40:443 · api.brt.ubiquicom.com
2026-01-03 06:07
HTTP/1.1 404 Not Found Content-Length: 0 Connection: close Date: Sat, 03 Jan 2026 06:07:10 GMT Server: Microsoft-IIS/10.0 Set-Cookie: ARRAffinity=024b4110f82a23b5bc2ef2bea37543995b6f2e9a3779ca177f3932e9a57adad2;Path=/;HttpOnly;Secure;Domain=api.brt.ubiquicom.com Set-Cookie: ARRAffinitySameSite=024b4110f82a23b5bc2ef2bea37543995b6f2e9a3779ca177f3932e9a57adad2;Path=/;HttpOnly;SameSite=None;Secure;Domain=api.brt.ubiquicom.com Request-Context: appId=cid-v1:8456fafe-a8ee-4165-b3dc-b18b7733f032 X-Powered-By: ASP.NET