By searching for results, your agree with our Terms of service
Found 370 results for
+plugin:KafkaOpenPlugin +events.leak.severity:"medium"

Looking for more results ? Register a free account

Countries

  • China 167
  • United States 62
  • India 21
  • Singapore 18
  • Germany 15
  • South Korea 11
  • Netherlands 9
  • Vietnam 9
  • France 8
  • United Kingdom 8

Sources

  • KafkaOpenPlugin 370
  • ZookeeperOpenPlugin 184
  • ElasticSearchOpenPlugin 156
  • ElasticSearchExplorePlugin 151
  • MongoOpenPlugin 104
  • MongoSchemaPlugin 86
  • ConfigJsonHttp 67
  • RedisOpenPlugin 53
  • GitConfigPlugin 50
  • GitConfigHttpPlugin 48

LeakIX fingerprint

  • 436d217a42ab3a37d319f9432d44927e2d44927e2d44927e2d44927ef6a5dd03 63
  • d606b92f1b5fdf18218cad2d218cad2d218cad2d218cad2d218cad2d1e418044 48
  • ec3b73bba3ff32e93431a1b67a15e6867a15e6867a15e6867a15e6869ac1a5a9 29
  • 436d217a42ab3a37a42e2146104cba4d28300b1428300b1428300b14ed90c669 18
  • ec3b73bba3ff32e93431a1b62abf43512abf43512abf43512abf43512e984237 16
  • 436d217a42ab3a37a42e2146ac2081816354a1246354a1246354a124b0f5b1e1 14
  • ec3b73bba3ff32e9d9844ea9c36ca056234a057a1167116b1167116b2c07b649 11
  • 4fa495ba934f92efb4d87ffcb4d87ffcb4d87ffcb4d87ffcb4d87ffce55dba0d 10
  • ec3b73bba3ff32e9151f80953fcd232e607af672b8902a23b8902a2395072479 9
  • 4fa495ba934f92efd08beeafd08beeafd08beeafd08beeafd08beeaff242316f 8

Network

  • Hangzhou Alibaba Advertising Co.,Ltd. 89
  • Amazon.com, Inc. 60
  • Shenzhen Tencent Computer Systems Company Limited 19
  • DigitalOcean, LLC 16
  • Linode, LLC 10
  • Huawei Cloud Service data center 8
  • OVH SAS 7
  • Zenlayer Inc 7
  • Google LLC 5
  • No.31,Jin-rong Street 5

IP Ranges

  • 47.96.0.0/12 22
  • 128.14.128.0/18 7
  • 106.14.0.0/15 6
  • 39.104.0.0/14 6
  • 13.232.0.0/13 5
  • 8.128.0.0/10 5
  • 101.37.0.0/16 4
  • 120.24.0.0/14 4
  • 139.162.0.0/16 4
  • 39.96.0.0/13 4

ASN: 37963
8 events in 605 days
Leak size: 220.5 MB
Open ports: 9092,9200
Indices: 7, document count: 117, size: 220.5 MB
Found index .geoip_databases with 41 documents (43.2 MB)
Found index .apm-custom-link with 0 docu...
Analysis helper :
                
estk --url=http://47.97.207.16:9200 list
            

ASN: 37963
27 events in 484 days
Open ports: 9092,2181,7000
Redis is open

ASN: 16509
63 events in 638 days
Leak size: 1.2 kB
Open ports: 2181,27017,6379,9092
Collections: 3, document count: 6, size: 1.2 kB
Found collection READ__ME_TO_RECOVER_YOUR_DATA.README  with 1 documents (745 B)
Found collection ...
Analysis helper :
                
echo 'show dbs' | mongo --host 52.53.216.188 --port 27017
            

ASN: 45090
7 events in 599 days
Leak size: 43.6 kB
Open ports: 9092,9200
Indices: 6, document count: 7, size: 43.6 kB
Found index v2 with 1 documents (8.0 kB)
Found index api with 2 documents (11.9 kB)
Found index v1 w...
Analysis helper :
                
estk --url=http://119.45.187.98:9200 list
            

ASN: 138421
33 events in 567 days
Leak size: 5.5 kB
Open ports: 9092,9200
Indices: 1, document count: 1, size: 5.5 kB
Found index read_me with 1 documents (5.5 kB)
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 14b57thKoPjmVVkh6HHLPz8g7fyBJ5SEcr . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://223.167.110.99:9200 list
            

ASN: 4134
14 events in 432 days
Leak size: 2.8 kB
Open ports: 9092,2181,9200
Indices: 2, document count: 0, size: 2.8 kB
Found index device_ble with 0 documents (1.4 kB)
Found index device_cwis_record with 0 documents (1.4...
Analysis helper :
                
estk --url=http://113.108.62.58:9200 list
            

ASN: 15169
90 events in 652 days
Open ports: 5601,9200,9092,80,2181,9201,3306,7000
Redis is open

ASN: 58466
46 events in 549 days
Open ports: 27017,2181,9092
Collections: 1, document count: 0, size: 0 B
Found collection READ_ME_TO_RECOVER_YOUR_DATA.README 
Analysis helper :
                
echo 'show dbs' | mongo --host 114.67.176.148 --port 27017
            

ASN: 24940
14 events in 599 days
Open ports: 9092,2181,443
Certificate domains:
academy-cirse-org.edaktik.net

Apache Status

Apache Server Status for 159.69.222.74 (via 159.69.222.74)

Server Version: Apache/2.4.41 (Ubuntu) mod_fcgid/2.3.9 OpenSSL/1.1.1f...

ASN: 37963
14 events in 478 days
Open ports: 9092,7000
Redis is open

ASN: 4808
42 events in 429 days
Leak size: 985.9 MB
Open ports: 9092,9200,5601
Indices: 47, document count: 4068809, size: 985.9 MB
Through Kibana endpoint
Found index .kibana_7.13.3_001 with 56 documents (2.2 MB)
Found inde...
Analysis helper :
                
estk --url=http://123.125.8.43:5601 list
            

ASN: 14061
41 events in 434 days
Leak size: 355 B
Open ports: 9092,443
Certificate domains:
peachlydev.com
cheekly.com
www.cheekly.com
[core]
	repositoryformatversion = 0
	filemode = false
	bare = false
	logallrefupdates = true
	symlinks = false
	ignorecase = true
[submodule]
	ac...

ASN: 37963
27 events in 471 days
Leak size: 4.6 kB
Open ports: 9092,2181,9200
Indices: 1, document count: 1, size: 4.6 kB
Found index read_me with 1 documents (4.6 kB)
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 14b57thKoPjmVVkh6HHLPz8g7fyBJ5SEcr . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://47.111.86.64:9200 list
            

ASN: 63949
12 events in 427 days
Leak size: 266 B
Open ports: 2181,9092,80
[core]
	repositoryformatversion = 0
	filemode = true
	bare = false
	logallrefupdates = true
[remote "origin"]
	url = https://github.com/SamBonell...

ASN: 4134
11 events in 688 days
Leak size: 5.4 MB
Open ports: 3306,2181,9092,27017,9200
Indices: 2, document count: 15691, size: 5.4 MB
Found index read_me with  documents ()
Found index lili_goods with 15691 documents (5.4 MB)
Analysis helper :
                
estk --url=http://49.74.219.78:9200 list
            

ASN: 37963
13 events in 549 days
Open ports: 27017,2181,9092
Found 2 collections:
Found collection "system.version"
Found collection "system.users"
Analysis helper :
                
echo 'show dbs' | mongo --host 47.105.62.165 --port 27017
            

ASN: 37963
51 events in 436 days
Leak size: 4.8 kB
Open ports: 9092,2181,9200
Indices: 1, document count: 1, size: 4.8 kB
Found index read_me with 1 documents (4.8 kB)
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 14b57thKoPjmVVkh6HHLPz8g7fyBJ5SEcr . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://47.102.39.126:9200 list
            

ASN: 14061
41 events in 436 days
Leak size: 2.3 MB
Open ports: 9092,2181,5601,9200
Indices: 5, document count: 13, size: 2.3 MB
Through Kibana endpoint
Found index .kibana_7.12.1_001 with 11 documents (2.2 MB)
Found index .apm-c...
Analysis helper :
                
estk --url=http://159.89.138.235:5601 list
            

ASN: 14618
21 events in 750 days
Leak size: 208 B
Open ports: 9092,80
[core]
	repositoryformatversion = 0
	filemode = true
	bare = false
	logallrefupdates = true
[remote "origin"]
	url = git@bitbucket.org:advantaged...

ASN: 14061
35 events in 490 days
Open ports: 2181,9092,443
Certificate domains:
gettravelvoucher.com
Found 72 files trough .DS_Store spidering:

/.htaccess
/404.html
/android-chrome-192x192.png
/android-chrome-512x512.png
/apple-touch-icon.png
/a...