Apache 2.4.41
tcp/80
The Kafka instance is available to the public without authentication.
An attacker could connect to the queue to extract private/confidential information in real-time.
Fingerprint: 43224224eeda9da960defeaae0540fdd8212b441c9f98de652d29ed5322c95fd
NoAuth Found topic provisioning_change Found topic command Found topic connection Found topic wifiscan Found topic healthcheck Found topic device_event_queue Found topic service_events Found topic state Found topic __consumer_offsets Found topic device Found topic telemetry
Fingerprint: 43224224eeda9da960defeaaa6f8a9e54688ef3474461b784009a06f693c8f4f
NoAuth Found topic healthcheck Found topic device Found topic telemetry Found topic connection Found topic wifiscan Found topic device_event_queue Found topic service_events Found topic provisioning_change Found topic state Found topic command Found topic __consumer_offsets
Fingerprint: 43224224eeda9da960defeaaafa4b4622d00af92dc3e5d21321d45a56107c18d
NoAuth Found topic service_events Found topic __consumer_offsets Found topic connection Found topic device_event_queue Found topic telemetry Found topic provisioning_change Found topic state Found topic command Found topic wifiscan Found topic healthcheck Found topic device
Fingerprint: 43224224eeda9da960defeaae8f93a3b4ff0146da4dbcb5412b0a80e4e02a23f
NoAuth Found topic device Found topic telemetry Found topic provisioning_change Found topic command Found topic connection Found topic wifiscan Found topic device_event_queue Found topic service_events Found topic state Found topic __consumer_offsets Found topic healthcheck
Fingerprint: 43224224eeda9da960defeaae0540fddc4c2808d6c43d62dde033582da5ea333
NoAuth Found topic provisioning_change Found topic state Found topic __consumer_offsets Found topic connection Found topic wifiscan Found topic device Found topic service_events Found topic command Found topic healthcheck Found topic device_event_queue Found topic telemetry
Fingerprint: 43224224eeda9da960defeaae7e9936427402c040c70702bd340e9981e91c931
NoAuth Found topic state Found topic __consumer_offsets Found topic connection Found topic wifiscan Found topic device_event_queue Found topic service_events Found topic provisioning_change Found topic command Found topic healthcheck Found topic device Found topic telemetry
Fingerprint: 43224224eeda9da960defeaae0540fddc4c2808d6c43d62d826fb4b00becaed7
NoAuth Found topic provisioning_change Found topic state Found topic __consumer_offsets Found topic healthcheck Found topic device_event_queue Found topic telemetry Found topic service_events Found topic command Found topic connection Found topic wifiscan Found topic device
Fingerprint: 43224224eeda9da960defeaae7e993646ad2809e8af2d149a42f458d4d005c03
NoAuth Found topic state Found topic command Found topic healthcheck Found topic device_event_queue Found topic wifiscan Found topic device Found topic telemetry Found topic service_events Found topic provisioning_change Found topic __consumer_offsets Found topic connection
Fingerprint: 43224224eeda9da960defeaa55133bbec1824917985220af0b7b9cd48a16d5c9
NoAuth Found topic device_event_queue Found topic device Found topic __consumer_offsets Found topic connection Found topic state Found topic command Found topic wifiscan Found topic healthcheck Found topic telemetry Found topic service_events Found topic provisioning_change
Fingerprint: 43224224eeda9da960defeaab21b81d80c45398792dca461da5c5764f3ea8edd
NoAuth Found topic command Found topic wifiscan Found topic telemetry Found topic healthcheck Found topic device_event_queue Found topic device Found topic service_events Found topic provisioning_change Found topic state Found topic __consumer_offsets Found topic connection
Fingerprint: 43224224eeda9da960defeaadacb119987ac9dd9d29b7030ac78cfa012cfa4ad
NoAuth Found topic wifiscan Found topic service_events Found topic provisioning_change Found topic __consumer_offsets Found topic connection Found topic device Found topic telemetry Found topic state Found topic command Found topic healthcheck Found topic device_event_queue
Fingerprint: 43224224eeda9da960defeaa0efe442a49d85039b02f5b5e5f40db4220a6e59d
NoAuth Found topic __consumer_offsets Found topic connection Found topic wifiscan Found topic device_event_queue Found topic device Found topic command Found topic provisioning_change Found topic state Found topic healthcheck Found topic telemetry Found topic service_events
Fingerprint: 43224224eeda9da960defeaab21b81d89c46b41886b83268fe64b464ed2627eb
NoAuth Found topic command Found topic __consumer_offsets Found topic device_event_queue Found topic telemetry Found topic service_events Found topic provisioning_change Found topic state Found topic connection Found topic wifiscan Found topic healthcheck Found topic device
MySQL is currently open without authentication.
Additionally a ransom note has been found in the dataset which indicates it has been compromised
This results in all the database data made available publicly.
Severity: critical
Fingerprint: cf350410ecceb5fd336491ecd9f4b48406a3fd33bb75a725e01e969b26d08c7a
Databases: 32, row count: 135889, size: 7.6 MB Found table README_TO_RECOVER_A.RECOVER_YOUR_DATA with 2 records Found table mysql.columns_priv with 0 records Found table mysql.db with 0 records Found table mysql.engine_cost with 2 records Found table mysql.event with 0 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 40 records Found table mysql.help_keyword with 756 records Found table mysql.help_relation with 862 records Found table mysql.help_topic with 578 records Found table mysql.innodb_index_stats with 10 records Found table mysql.innodb_table_stats with 3 records Found table mysql.ndb_binlog_index with 0 records Found table mysql.plugin with 0 records Found table mysql.proc with 36 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 0 records Found table mysql.time_zone with 2074 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 1649 records Found table mysql.time_zone_transition with 120838 records Found table mysql.time_zone_transition_type with 9025 records Found table mysql.user with 3 records
Severity: critical
Fingerprint: cf350410ecceb5fd459b172588e545b924ddb97453eece34a1251a72305cbbb4
Databases: 32, row count: 127472, size: 7.6 MB Found table README_TO_RECOVER_A.RECOVER_YOUR_DATA with 2 records Found table mysql.columns_priv with 0 records Found table mysql.db with 0 records Found table mysql.engine_cost with 2 records Found table mysql.event with 0 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 40 records Found table mysql.help_keyword with 683 records Found table mysql.help_relation with 955 records Found table mysql.help_topic with 491 records Found table mysql.innodb_index_stats with 10 records Found table mysql.innodb_table_stats with 3 records Found table mysql.ndb_binlog_index with 0 records Found table mysql.plugin with 0 records Found table mysql.proc with 36 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 0 records Found table mysql.time_zone with 1438 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 1950 records Found table mysql.time_zone_transition with 112823 records Found table mysql.time_zone_transition_type with 9025 records Found table mysql.user with 3 records
Severity: critical
Fingerprint: cf350410ecceb5fdc0926937f8ae046f7b37267a32ccdc3a5763df80e0b6265f
Databases: 32, row count: 135918, size: 7.6 MB Found table README_TO_RECOVER_A.RECOVER_YOUR_DATA with 2 records Found table mysql.columns_priv with 0 records Found table mysql.db with 0 records Found table mysql.engine_cost with 2 records Found table mysql.event with 0 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 40 records Found table mysql.help_keyword with 641 records Found table mysql.help_relation with 1507 records Found table mysql.help_topic with 593 records Found table mysql.innodb_index_stats with 10 records Found table mysql.innodb_table_stats with 3 records Found table mysql.ndb_binlog_index with 0 records Found table mysql.plugin with 0 records Found table mysql.proc with 36 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 0 records Found table mysql.time_zone with 1823 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 1705 records Found table mysql.time_zone_transition with 120838 records Found table mysql.time_zone_transition_type with 8704 records Found table mysql.user with 3 records
Severity: critical
Fingerprint: cf350410ecceb5fdcf01aef8701d46a8270609c70bc1ce29e3c574af8b271fda
Databases: 32, row count: 128212, size: 7.6 MB Found table README_TO_RECOVER_A.RECOVER_YOUR_DATA with 2 records Found table mysql.columns_priv with 0 records Found table mysql.db with 0 records Found table mysql.engine_cost with 2 records Found table mysql.event with 0 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 40 records Found table mysql.help_keyword with 683 records Found table mysql.help_relation with 1171 records Found table mysql.help_topic with 584 records Found table mysql.innodb_index_stats with 10 records Found table mysql.innodb_table_stats with 3 records Found table mysql.ndb_binlog_index with 0 records Found table mysql.plugin with 0 records Found table mysql.proc with 36 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 0 records Found table mysql.time_zone with 1815 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 2123 records Found table mysql.time_zone_transition with 113268 records Found table mysql.time_zone_transition_type with 8461 records Found table mysql.user with 3 records
Severity: critical
Fingerprint: cf350410ecceb5fd748eba09df018bb0aa70fb5fbd0490d3f0d5baa99b370e68
Databases: 34, row count: 135925, size: 7.6 MB No or default MySQL authentication found.Found table README_TO_RECOVER_A.RECOVER_YOUR_DATA with 2 records Found table mysql.columns_priv with 0 records Found table mysql.db with 2 records Found table mysql.engine_cost with 2 records Found table mysql.event with 0 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 40 records Found table mysql.help_keyword with 683 records Found table mysql.help_relation with 1480 records Found table mysql.help_topic with 647 records Found table mysql.hnsnar32 with 0 records Found table mysql.innodb_index_stats with 16 records Found table mysql.innodb_table_stats with 5 records Found table mysql.ndb_binlog_index with 0 records Found table mysql.plugin with 0 records Found table mysql.proc with 36 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 0 records Found table mysql.time_zone with 1815 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 1885 records Found table mysql.time_zone_transition with 120838 records Found table mysql.time_zone_transition_type with 8461 records Found table mysql.user with 2 records Found table mysql.veozjt with 0 records
Severity: critical
Fingerprint: cf350410ecceb5fd8ecabec66976fa8d836fe3b89271a9a838ad0456b7a3d86e
Databases: 32, row count: 135663, size: 7.6 MB No or default MySQL authentication found.Found table README_TO_RECOVER_A.RECOVER_YOUR_DATA with 2 records Found table mysql.columns_priv with 0 records Found table mysql.db with 0 records Found table mysql.engine_cost with 2 records Found table mysql.event with 0 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 40 records Found table mysql.help_keyword with 568 records Found table mysql.help_relation with 1264 records Found table mysql.help_topic with 662 records Found table mysql.innodb_index_stats with 10 records Found table mysql.innodb_table_stats with 3 records Found table mysql.ndb_binlog_index with 0 records Found table mysql.plugin with 0 records Found table mysql.proc with 36 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 0 records Found table mysql.time_zone with 1823 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 1698 records Found table mysql.time_zone_transition with 120838 records Found table mysql.time_zone_transition_type with 8704 records Found table mysql.user with 2 records
Open service 209.126.2.87:3306
2024-05-12 18:22
MySQL detected
Open service 209.126.2.87:3306
2024-05-08 12:46
MySQL detected
Open service 209.126.2.87:3306
2024-04-30 19:59
MySQL detected
Open service 209.126.2.87:3306
2024-04-28 18:46
MySQL detected
Open service 209.126.2.87:80
2024-04-25 21:33
HTTP/1.1 301 Moved Permanently Date: Thu, 25 Apr 2024 21:33:59 GMT Server: Apache/2.4.41 (Ubuntu) Location: http://pcc-doc.prontonetworks.com/ Content-Length: 320 Connection: close Content-Type: text/html; charset=iso-8859-1 Page title: 301 Moved Permanently <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>301 Moved Permanently</title> </head><body> <h1>Moved Permanently</h1> <p>The document has moved <a href="http://pcc-doc.prontonetworks.com/">here</a>.</p> <hr> <address>Apache/2.4.41 (Ubuntu) Server at 209.126.2.87 Port 80</address> </body></html>
Open service 209.126.2.87:3306
2024-04-25 08:21
MySQL detected
Open service 209.126.2.87:3306
2024-04-24 16:06
MySQL detected
Open service 209.126.2.87:80
2024-04-24 12:45
HTTP/1.1 301 Moved Permanently Date: Wed, 24 Apr 2024 12:45:22 GMT Server: Apache/2.4.41 (Ubuntu) Location: http://pcc-doc.prontonetworks.com/ Content-Length: 320 Connection: close Content-Type: text/html; charset=iso-8859-1 Page title: 301 Moved Permanently <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>301 Moved Permanently</title> </head><body> <h1>Moved Permanently</h1> <p>The document has moved <a href="http://pcc-doc.prontonetworks.com/">here</a>.</p> <hr> <address>Apache/2.4.41 (Ubuntu) Server at 209.126.2.87 Port 80</address> </body></html>