Apache 2.4.54
tcp/443
GitHub.com
tcp/80
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652205cf3850
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = git@github.com:yokowasis/adminlte fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master
Open service 2606:50c0:8002::153:80 · man2kobi.sch.id
2026-02-07 11:32
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 162 Server: GitHub.com Content-Type: text/html x-origin-cache: HIT Location: https://man2kobi.sch.id/ X-GitHub-Request-Id: 11C8:3A133:2BF38C:2D52B1:698722EC Accept-Ranges: bytes Age: 0 Date: Sat, 07 Feb 2026 11:33:00 GMT Via: 1.1 varnish X-Served-By: cache-lon4227-LON X-Cache: MISS X-Cache-Hits: 0 X-Timer: S1770463980.443732,VS0,VE84 Vary: Accept-Encoding X-Fastly-Request-ID: daf0a677a8d2b55087e0cc67fc17010299cfbb40 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 96.9.211.90:443 · rdm.man2kobi.sch.id
2026-02-04 18:12
HTTP/1.1 200 OK Alt-Svc: h3=":443"; ma=2592000 Cache-Control: no-store, no-cache, must-revalidate Content-Security-Policy: upgrade-insecure-requests Content-Type: text/html; charset=UTF-8 Date: Wed, 04 Feb 2026 18:12:39 GMT Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Server: Apache/2.4.54 (Debian) Set-Cookie: PHPSESSID=bb4ca64be05ce9552f4cdd903de3b9b7; path=/ Set-Cookie: _revision=20260129181131; expires=Thu, 05-Feb-2026 18:12:39 GMT; Max-Age=86400; path=/ Strict-Transport-Security: max-age=31536000; includeSubDomains; preload Vary: Accept-Encoding X-Frame-Options: SAMEORIGIN X-Powered-By: PHP/7.4.33 Connection: close Transfer-Encoding: chunked