Server
Script-kiddies 2019
door: webmaster [08-01-2019]
fail2ban.org
Mijn Raspberry Pi webserver wordt geplaagd met merkwaardige HTTP-requests. Ze komen voor in tools van 'script-kiddies'.
Ik maak gebruik van Fail2ban dat serverlogs leest en IP-adressen blokkeert.
Waar komt het 'evil' vandaan?
De top 10!
| Land | |
|---|---|
1.
United States
|
|
2.
Russian Federation
|
|
3.
China
|
|
4.
United Kingdom
|
|
5.
Germany
|
|
6.
Iceland
|
|
7.
Portugal
|
|
8.
France
|
|
9.
Ireland
|
|
10.
Seychelles
|
|
| HTTP-request |
|---|
| /.well-known/security.txt |
| //a2billing/customer/templates/default/footer.tpl |
| //vtigercrm/vtigerservice.php |
| /HNAP1 |
| /HNAP1/ |
| /a2billing/admin/Public/PP_error.php?c=accessdenied |
| /a2billing/customer/templates/default/footer.tpl |
| /admin//config.php |
| /api/v1 |
| /api/v1/pods |
| /cgi-bin/config.exp |
| http://xxx.xxx.xxx.xxx/echo.php |
| http://xxx.xxx.xxx.xxx:7118/26f |
| http://xxx.xxx.xxx.xxx:7537/av42t8un9j621pe19 |
United States
Russian Federation
China
United Kingdom
Germany
Iceland
Portugal
France
Ireland
Seychelles