.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c39aac35b39aac35b2578364caaf073e5d05aee2d7c37fe42
Found 14 files trough .DS_Store spidering: /images /images/filter-icon-convertible.png /images/filter-icon-coupe.png /images/filter-icon-default.png /images/filter-icon-hatchback.png /images/filter-icon-minivan.png /images/filter-icon-motorcycle.png /images/filter-icon-pickup.png /images/filter-icon-sedan.png /images/filter-icon-suv.png /images/filter-icon-wagon.png /images/icons /images/no_photo.svg /images/sold-watermark.svg
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c39aac35b39aac35b2578364caaf073e5d05aee2d7c37fe42
Found 14 files trough .DS_Store spidering: /images /images/filter-icon-convertible.png /images/filter-icon-coupe.png /images/filter-icon-default.png /images/filter-icon-hatchback.png /images/filter-icon-minivan.png /images/filter-icon-motorcycle.png /images/filter-icon-pickup.png /images/filter-icon-sedan.png /images/filter-icon-suv.png /images/filter-icon-wagon.png /images/icons /images/no_photo.svg /images/sold-watermark.svg
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Additionally the GIT credentials are present and could give unauthorized access to source code repository of private projects.
Severity: critical
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522e1eaf15f
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://elmenouar: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@github.com/V12team/wordpress.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "website_v2"] remote = origin merge = refs/heads/website_v2
Open service 216.58.206.83:443 · www.dallasdrive.net
2024-11-02 22:49
HTTP/1.1 301 Moved Permanently Date: Sat, 02 Nov 2024 22:49:36 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 x-frame-options: SAMEORIGIN x-xss-protection: 0 x-content-type-options: nosniff x-permitted-cross-domain-policies: none referrer-policy: strict-origin-when-cross-origin location: https://dallasdrive.net/ cache-control: no-cache x-request-id: f037e8ed-cfa3-4235-b081-76067ef54b10 x-runtime: 0.005604 strict-transport-security: max-age=63072000; includeSubDomains Via: 1.1 google Connection: close
Open service 216.58.206.83:443 · www.dallasdrive.net
2024-11-01 20:19
HTTP/1.1 301 Moved Permanently Date: Fri, 01 Nov 2024 20:19:50 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 x-frame-options: SAMEORIGIN x-xss-protection: 0 x-content-type-options: nosniff x-permitted-cross-domain-policies: none referrer-policy: strict-origin-when-cross-origin location: https://dallasdrive.net/ cache-control: no-cache x-request-id: 1a3bc5fc-21b8-43d4-80ad-6fea321cb98b x-runtime: 0.005321 strict-transport-security: max-age=63072000; includeSubDomains Via: 1.1 google Connection: close
Open service 216.58.206.83:443 · www.dallasdrive.net
2024-10-30 19:09
HTTP/1.1 301 Moved Permanently Date: Wed, 30 Oct 2024 19:09:38 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 x-frame-options: SAMEORIGIN x-xss-protection: 0 x-content-type-options: nosniff x-permitted-cross-domain-policies: none referrer-policy: strict-origin-when-cross-origin location: https://dallasdrive.net/ cache-control: no-cache x-request-id: 7c372fae-63cd-4b1a-9506-cfaa4267a78f x-runtime: 0.003707 strict-transport-security: max-age=63072000; includeSubDomains Via: 1.1 google Connection: close
Open service 216.58.206.83:443 · www.dallasdrive.net
2024-10-20 16:35
HTTP/1.1 301 Moved Permanently Date: Sun, 20 Oct 2024 16:35:04 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 x-frame-options: SAMEORIGIN x-xss-protection: 0 x-content-type-options: nosniff x-permitted-cross-domain-policies: none referrer-policy: strict-origin-when-cross-origin location: https://dallasdrive.net/ cache-control: no-cache x-request-id: 1253d47e-75de-4294-9aa3-e86366e157b9 x-runtime: 0.002439 strict-transport-security: max-age=63072000; includeSubDomains Via: 1.1 google Connection: close
Open service 216.58.206.83:443 · www.dallasdrive.net
2024-10-18 16:39
HTTP/1.1 301 Moved Permanently Date: Fri, 18 Oct 2024 16:39:58 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 x-frame-options: SAMEORIGIN x-xss-protection: 0 x-content-type-options: nosniff x-permitted-cross-domain-policies: none referrer-policy: strict-origin-when-cross-origin location: https://dallasdrive.net/ cache-control: no-cache x-request-id: 429070ce-9384-4c72-b476-227af54467cf x-runtime: 0.004904 strict-transport-security: max-age=63072000; includeSubDomains Via: 1.1 google Connection: close
Open service 216.58.206.83:443 · www.dallasdrive.net
2024-10-16 13:45
HTTP/1.1 301 Moved Permanently Date: Wed, 16 Oct 2024 13:45:54 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 x-frame-options: SAMEORIGIN x-xss-protection: 0 x-content-type-options: nosniff x-permitted-cross-domain-policies: none referrer-policy: strict-origin-when-cross-origin location: https://dallasdrive.net/ cache-control: no-cache x-request-id: 5fd99e46-a023-4deb-bbc9-021b2bf59be9 x-runtime: 0.002397 strict-transport-security: max-age=63072000; includeSubDomains Via: 1.1 google Connection: close
Open service 216.58.206.83:443 · www.dallasdrive.net
2024-10-14 23:46
HTTP/1.1 301 Moved Permanently Date: Mon, 14 Oct 2024 23:46:25 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 x-frame-options: SAMEORIGIN x-xss-protection: 0 x-content-type-options: nosniff x-permitted-cross-domain-policies: none referrer-policy: strict-origin-when-cross-origin location: https://dallasdrive.net/ cache-control: no-cache x-request-id: df6bf733-0e2e-4fb8-8e3a-1d1a2f161775 x-runtime: 0.005823 strict-transport-security: max-age=63072000; includeSubDomains Via: 1.1 google Connection: close
Open service 216.58.206.83:443 · www.dallasdrive.net
2024-10-02 17:58
HTTP/1.1 301 Moved Permanently Date: Wed, 02 Oct 2024 17:58:24 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 x-frame-options: SAMEORIGIN x-xss-protection: 0 x-content-type-options: nosniff x-permitted-cross-domain-policies: none referrer-policy: strict-origin-when-cross-origin location: https://dallasdrive.net/ cache-control: no-cache x-request-id: de36d86e-d1f4-4db6-a36e-4333572fa865 x-runtime: 0.002566 strict-transport-security: max-age=63072000; includeSubDomains Via: 1.1 google Connection: close
Open service 216.58.206.83:443 · www.dallasdrive.net
2024-09-30 13:06
HTTP/1.1 301 Moved Permanently Date: Mon, 30 Sep 2024 13:06:58 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 x-frame-options: SAMEORIGIN x-xss-protection: 0 x-content-type-options: nosniff x-permitted-cross-domain-policies: none referrer-policy: strict-origin-when-cross-origin location: https://dallasdrive.net/ cache-control: no-cache x-request-id: e6f8cd0b-6984-41f9-925d-130230ab7c1f x-runtime: 0.002569 strict-transport-security: max-age=63072000; includeSubDomains Via: 1.1 google Connection: close
Open service 216.58.206.83:443 · www.dallasdrive.net
2024-09-28 22:05
HTTP/1.1 301 Moved Permanently Date: Sat, 28 Sep 2024 22:05:26 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 x-frame-options: SAMEORIGIN x-xss-protection: 0 x-content-type-options: nosniff x-permitted-cross-domain-policies: none referrer-policy: strict-origin-when-cross-origin location: https://dallasdrive.net/ cache-control: no-cache x-request-id: aa827667-6bbb-4b1d-b83e-88f07ba79a00 x-runtime: 0.002241 strict-transport-security: max-age=63072000; includeSubDomains Via: 1.1 google Connection: close
Open service 142.250.184.243:443 · www.dallasdrive.net
2024-09-27 19:14
HTTP/1.1 301 Moved Permanently Date: Fri, 27 Sep 2024 19:14:42 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 x-frame-options: SAMEORIGIN x-xss-protection: 0 x-content-type-options: nosniff x-permitted-cross-domain-policies: none referrer-policy: strict-origin-when-cross-origin location: https://dallasdrive.net/ cache-control: no-cache x-request-id: af5d7bd8-b80f-4f50-a749-2268e6918764 x-runtime: 0.004818 strict-transport-security: max-age=63072000; includeSubDomains Via: 1.1 google Connection: close
Open service 2a00:1450:4001:831::2013:80 · www.dallasdrive.net
2024-09-27 19:14
HTTP/1.1 301 Moved Permanently Date: Fri, 27 Sep 2024 19:14:41 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 location: https://www.dallasdrive.net/ Via: 1.1 google Connection: close
Open service 2a00:1450:4001:831::2013:443 · www.dallasdrive.net
2024-09-27 19:14
HTTP/1.1 301 Moved Permanently Date: Fri, 27 Sep 2024 19:14:42 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 x-frame-options: SAMEORIGIN x-xss-protection: 0 x-content-type-options: nosniff x-permitted-cross-domain-policies: none referrer-policy: strict-origin-when-cross-origin location: https://dallasdrive.net/ cache-control: no-cache x-request-id: 7d93738f-5bbd-4452-b97e-3ed220b01f6d x-runtime: 0.006463 strict-transport-security: max-age=63072000; includeSubDomains Via: 1.1 google Connection: close