R
Railway4mo ago
yavuz

getting scanned for vulnerabilities

Project Id: dba6cd6e-5ea1-494c-b77f-81377e24fbde I've started seeing logs like this looks like someone is looking for sth. Can I do anything about this? Or.. should I not worry about it?
109.202.99.46:0 - "GET /config.yaml HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /.ssh/id_ed25519 HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /database.sql HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /.ssh/id_ecdsa HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /dump.sql HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /config.yml HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /backup.sql HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /server-status HTTP/1.1" 404 Not Found
nfig HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /.ssh/id_rsa HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /backup.tar.gz HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /config.xml HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /config.php HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /etc/shadow HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /secrets.json HTTP/1.1" 404 Not Found
INFO: 213.232.87.228:0 - "GET /server.key HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /.kube/config HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /.env.production HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /.git/HEAD HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /docker-compose.yml HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /etc/ssl/private/server.key HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /.env HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET / HTTP/1.1" 200 OK

INFO: 213.232.87.228:0 - "GET /config/database.php HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /.aws/credentials HTTP/1.1" 404 Not Found
109.202.99.46:0 - "GET /config.yaml HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /.ssh/id_ed25519 HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /database.sql HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /.ssh/id_ecdsa HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /dump.sql HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /config.yml HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /backup.sql HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /server-status HTTP/1.1" 404 Not Found
nfig HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /.ssh/id_rsa HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /backup.tar.gz HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /config.xml HTTP/1.1" 404 Not Found

INFO: 109.202.99.46:0 - "GET /config.php HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /etc/shadow HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /secrets.json HTTP/1.1" 404 Not Found
INFO: 213.232.87.228:0 - "GET /server.key HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /.kube/config HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /.env.production HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /.git/HEAD HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /docker-compose.yml HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /etc/ssl/private/server.key HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /.env HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET / HTTP/1.1" 200 OK

INFO: 213.232.87.228:0 - "GET /config/database.php HTTP/1.1" 404 Not Found

INFO: 213.232.87.228:0 - "GET /.aws/credentials HTTP/1.1" 404 Not Found
Looks like my project is being scanned.
Solution:
yep those are crawlers, nothing to worry about for your app
Jump to solution
4 Replies
Percy
Percy4mo ago
Project ID: dba6cd6e-5ea1-494c-b77f-81377e24fbde
Solution
Brody
Brody4mo ago
yep those are crawlers, nothing to worry about for your app
yavuz
yavuz4mo ago
Thanks Brody..
Brody
Brody4mo ago
no problem!
Want results from more Discord servers?
Add your server