MySQL is currently open without authentication.
Additionally a ransom note has been found in the dataset which indicates it has been compromised
This results in all the database data made available publicly.
Severity: critical
Fingerprint: cf350410ecceb5fd7522c582baa77b8cfb81f3abeb960ae6c68358696a977860
Databases: 38, row count: 143504, size: 7.9 MB Found table RECOVER_YOUR_DATA.RECOVER_YOUR_DATA with 2 records Found table mysql.columns_priv with 0 records Found table mysql.component with 0 records Found table mysql.db with 3 records Found table mysql.default_roles with 0 records Found table mysql.engine_cost with 2 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.global_grants with 97 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 53 records Found table mysql.help_keyword with 1219 records Found table mysql.help_relation with 1269 records Found table mysql.help_topic with 817 records Found table mysql.innodb_index_stats with 9 records Found table mysql.innodb_table_stats with 3 records Found table mysql.password_history with 0 records Found table mysql.plugin with 0 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.replication_asynchronous_connection_failover with 0 records Found table mysql.replication_asynchronous_connection_failover_managed with 0 records Found table mysql.replication_group_configuration_version with 1 records Found table mysql.replication_group_member_actions with 2 records Found table mysql.role_edges with 0 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 2 records Found table mysql.time_zone with 1885 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 2281 records Found table mysql.time_zone_transition with 125689 records Found table mysql.time_zone_transition_type with 10153 records Found table mysql.user with 6 records
Severity: high
Fingerprint: cf350410ecceb5fd1d9171edb7bfc4c1c08872bbd4872f45df1409e6cdb5f564
Databases: 61, row count: 142510, size: 8.5 MB No or default MySQL authentication found.Found table booting.JAMES_DOMAIN with 0 records Found table booting.JAMES_MAIL with 13 records Found table booting.JAMES_MAILBOX with 12 records Found table booting.JAMES_MAILBOX_ANNOTATION with 0 records Found table booting.JAMES_MAIL_PROPERTY with 52 records Found table booting.JAMES_MAIL_REPOS with 0 records Found table booting.JAMES_MAIL_USERFLAG with 0 records Found table booting.JAMES_MAX_DOMAIN_MESSAGE_COUNT with 0 records Found table booting.JAMES_MAX_DOMAIN_STORAGE with 0 records Found table booting.JAMES_MAX_GLOBAL_MESSAGE_COUNT with 0 records Found table booting.JAMES_MAX_Global_STORAGE with 0 records Found table booting.JAMES_MAX_USER_MESSAGE_COUNT with 0 records Found table booting.JAMES_MAX_USER_STORAGE with 0 records Found table booting.JAMES_QUOTA_CURRENTQUOTA with 0 records Found table booting.JAMES_RECIPIENT_REWRITE with 0 records Found table booting.JAMES_SIEVE_QUOTA with 0 records Found table booting.JAMES_SIEVE_SCRIPT with 0 records Found table booting.JAMES_SUBSCRIPTION with 10 records Found table booting.JAMES_USER with 2 records Found table booting.OPENJPA_SEQUENCE_TABLE with 0 records Found table booting.rainloop_ab_contacts with 4 records Found table booting.rainloop_ab_properties with 8 records Found table booting.rainloop_system with 1 records Found table booting.rainloop_users with 2 records Found table mysql.columns_priv with 0 records Found table mysql.component with 0 records Found table mysql.db with 3 records Found table mysql.default_roles with 0 records Found table mysql.engine_cost with 2 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.global_grants with 91 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 53 records Found table mysql.help_keyword with 961 records Found table mysql.help_relation with 1508 records Found table mysql.help_topic with 524 records Found table mysql.innodb_index_stats with 135 records Found table mysql.innodb_table_stats with 26 records Found table mysql.password_history with 0 records Found table mysql.plugin with 0 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.replication_asynchronous_connection_failover with 0 records Found table mysql.replication_asynchronous_connection_failover_managed with 0 records Found table mysql.replication_group_configuration_version with 1 records Found table mysql.replication_group_member_actions with 2 records Found table mysql.role_edges with 0 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 2 records Found table mysql.time_zone with 1532 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 2342 records Found table mysql.time_zone_transition with 125689 records Found table mysql.time_zone_transition_type with 9518 records Found table mysql.user with 6 records
Severity: high
Fingerprint: cf350410ecceb5fda2b19aa6be41d1b6ec01da44eff6ae98e7b11c6d18aa0e67
Databases: 61, row count: 142719, size: 8.5 MB No or default MySQL authentication found.Found table booting.JAMES_DOMAIN with 0 records Found table booting.JAMES_MAIL with 13 records Found table booting.JAMES_MAILBOX with 12 records Found table booting.JAMES_MAILBOX_ANNOTATION with 0 records Found table booting.JAMES_MAIL_PROPERTY with 52 records Found table booting.JAMES_MAIL_REPOS with 0 records Found table booting.JAMES_MAIL_USERFLAG with 0 records Found table booting.JAMES_MAX_DOMAIN_MESSAGE_COUNT with 0 records Found table booting.JAMES_MAX_DOMAIN_STORAGE with 0 records Found table booting.JAMES_MAX_GLOBAL_MESSAGE_COUNT with 0 records Found table booting.JAMES_MAX_Global_STORAGE with 0 records Found table booting.JAMES_MAX_USER_MESSAGE_COUNT with 0 records Found table booting.JAMES_MAX_USER_STORAGE with 0 records Found table booting.JAMES_QUOTA_CURRENTQUOTA with 0 records Found table booting.JAMES_RECIPIENT_REWRITE with 0 records Found table booting.JAMES_SIEVE_QUOTA with 0 records Found table booting.JAMES_SIEVE_SCRIPT with 0 records Found table booting.JAMES_SUBSCRIPTION with 10 records Found table booting.JAMES_USER with 2 records Found table booting.OPENJPA_SEQUENCE_TABLE with 0 records Found table booting.rainloop_ab_contacts with 4 records Found table booting.rainloop_ab_properties with 8 records Found table booting.rainloop_system with 1 records Found table booting.rainloop_users with 2 records Found table mysql.columns_priv with 0 records Found table mysql.component with 0 records Found table mysql.db with 3 records Found table mysql.default_roles with 0 records Found table mysql.engine_cost with 2 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.global_grants with 78 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 53 records Found table mysql.help_keyword with 885 records Found table mysql.help_relation with 1508 records Found table mysql.help_topic with 459 records Found table mysql.innodb_index_stats with 157 records Found table mysql.innodb_table_stats with 26 records Found table mysql.password_history with 0 records Found table mysql.plugin with 0 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.replication_asynchronous_connection_failover with 0 records Found table mysql.replication_asynchronous_connection_failover_managed with 0 records Found table mysql.replication_group_configuration_version with 1 records Found table mysql.replication_group_member_actions with 2 records Found table mysql.role_edges with 0 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 2 records Found table mysql.time_zone with 1815 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 1765 records Found table mysql.time_zone_transition with 125689 records Found table mysql.time_zone_transition_type with 10153 records Found table mysql.user with 6 records
MySQL is currently open without authentication.
Additionally a ransom note has been found in the dataset which indicates it has been compromised
This results in all the database data made available publicly.
Severity: critical
Fingerprint: cf350410ecceb5fd305a06ffdcff3df582bae40b16447bcd6bfcddebfa05d4ee
Databases: 34, row count: 138985, size: 8.4 MB Found table __RESTORE_DATABASES.README with 1 records Found table mysql.slow_log with 2 records Found table mysql.servers with 0 records Found table mysql.time_zone with 1823 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.func with 0 records Found table mysql.plugin with 0 records Found table mysql.proc with 50 records Found table mysql.innodb_table_stats with 4 records Found table mysql.gtid_slave_pos with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.procs_priv with 0 records Found table mysql.time_zone_transition_type with 9972 records Found table mysql.innodb_index_stats with 13 records Found table mysql.db with 2 records Found table mysql.general_log with 2 records Found table mysql.columns_priv with 0 records Found table mysql.global_priv with 5 records Found table mysql.user with 5 records Found table mysql.help_relation with 36 records Found table mysql.event with 0 records Found table mysql.roles_mapping with 0 records Found table mysql.time_zone_name with 1823 records Found table mysql.tables_priv with 1 records Found table mysql.time_zone_transition with 124448 records Found table mysql.help_keyword with 16 records Found table mysql.help_topic with 735 records Found table mysql.index_stats with 0 records Found table mysql.column_stats with 0 records Found table mysql.transaction_registry with 0 records Found table mysql.help_category with 44 records Found table mysql.table_stats with 0 records Found table BootDB.README with 1 records Found table roundcubemail.README with 1 records
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: medium
Fingerprint: 5f32cf5d6962f09ccbc000d9cbc000d9c481668989fd1dda59bbb9a83a3af301
Found 49 files trough .DS_Store spidering: /css /images /images/20190525_170426.jpg /images/20190525_170603.jpg /images/20190526_151251.jpg /images/20190526_151258.jpg /images/20190526_151301.jpg /images/20190629_151333.jpg /images/20190629_161620.jpg /images/20190728_153353.jpg /images/20190728_153541.jpg /images/20190730_170352.jpg /images/20190730_170357.jpg /images/20190817_163519.jpg /images/20210104_110116418.jpg /images/20230611_120208.jpg /images/20230611_144740.jpg /images/20230612_181138.jpg /images/20230614_105237.jpg /images/20230614_105243.jpg /images/439.JPG /images/IMG_0462.JPG /images/IMG_0598.JPG /images/IMG_0782.JPG /images/IMG_0851.JPG /images/IMG_0853.JPG /images/IMG_0854.JPG /images/IMG_0956.JPG /images/IMG_0984.JPG /images/IMG_0991.JPG /images/IMG_20171007_145644.JPG /images/IMG_20191016_112514.jpg /images/IMG_20191107_101639.jpg /images/IMG_20191225_204334.jpg /images/IMG_20200102_182453.jpg /images/IMG_20200102_182512.jpg /images/IMG_3019.JPG /images/IMG_3160.JPG /images/IMG_3178.JPG /images/IMG_3226.JPG /images/IMG_4751.JPG /images/IMG_4753.JPG /images/IMG_4759.JPG /images/IMG_6531.JPG /images/IMG_6690.JPG /js /package.json /README.md /view
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652252874cef
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true ignorecase = true precomposeunicode = true [submodule] active = . [remote "origin"] url = https://github.com/Dong-Hyeok-Ing/javascript_study.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "first-day"] remote = origin merge = refs/heads/first-day
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652252874cef
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true ignorecase = true precomposeunicode = true [submodule] active = . [remote "origin"] url = https://github.com/Dong-Hyeok-Ing/javascript_study.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "first-day"] remote = origin merge = refs/heads/first-day
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: medium
Fingerprint: 5f32cf5d6962f09ccbc000d9cbc000d9c481668989fd1dda59bbb9a83a3af301
Found 49 files trough .DS_Store spidering: /css /images /images/20190525_170426.jpg /images/20190525_170603.jpg /images/20190526_151251.jpg /images/20190526_151258.jpg /images/20190526_151301.jpg /images/20190629_151333.jpg /images/20190629_161620.jpg /images/20190728_153353.jpg /images/20190728_153541.jpg /images/20190730_170352.jpg /images/20190730_170357.jpg /images/20190817_163519.jpg /images/20210104_110116418.jpg /images/20230611_120208.jpg /images/20230611_144740.jpg /images/20230612_181138.jpg /images/20230614_105237.jpg /images/20230614_105243.jpg /images/439.JPG /images/IMG_0462.JPG /images/IMG_0598.JPG /images/IMG_0782.JPG /images/IMG_0851.JPG /images/IMG_0853.JPG /images/IMG_0854.JPG /images/IMG_0956.JPG /images/IMG_0984.JPG /images/IMG_0991.JPG /images/IMG_20171007_145644.JPG /images/IMG_20191016_112514.jpg /images/IMG_20191107_101639.jpg /images/IMG_20191225_204334.jpg /images/IMG_20200102_182453.jpg /images/IMG_20200102_182512.jpg /images/IMG_3019.JPG /images/IMG_3160.JPG /images/IMG_3178.JPG /images/IMG_3226.JPG /images/IMG_4751.JPG /images/IMG_4753.JPG /images/IMG_4759.JPG /images/IMG_6531.JPG /images/IMG_6690.JPG /js /package.json /README.md /view
Open service 58.230.122.62:3307
2024-06-13 10:49
MySQL detected
Open service 58.230.122.62:3306
2024-05-30 12:41
MySQL detected