| Risk Level | Number of Alerts |
|---|---|
|
High
|
0
|
|
Medium
|
3
|
|
Low
|
3
|
|
Informational
|
4
|
For each step: result (Pass/Fail) - risk (of highest alert(s) for the step, if any).
| Name | Risk Level | Number of Instances |
|---|---|---|
| CSP: Wildcard Directive | Medium | 10 |
| CSP: style-src unsafe-inline | Medium | 10 |
| Hidden File Found | Medium | 4 |
| Private IP Disclosure | Low | 1 |
| Timestamp Disclosure - Unix | Low | 203 |
| ZAP is Out of Date | Low | 1 |
| Information Disclosure - Suspicious Comments | Informational | 1 |
| Modern Web Application | Informational | 10 |
| Retrieved from Cache | Informational | 13 |
| User Agent Fuzzer | Informational | 187 |
|
Medium |
CSP: Wildcard Directive |
|---|---|
| Description |
Content Security Policy (CSP) is an added layer of security that helps to detect and mitigate certain types of attacks. Including (but not limited to) Cross Site Scripting (XSS), and data injection attacks. These attacks are used for everything from data theft to site defacement or distribution of malware. CSP provides a set of standard HTTP headers that allow website owners to declare approved sources of content that browsers should be allowed to load on that page — covered types are JavaScript, CSS, HTML frames, fonts, images and embeddable objects such as Java applets, ActiveX, audio and video files.
|
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-ATHDLrFBNlu5OnFyCHnJQQ' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | The following directives either allow wildcard sources (or ancestors), are not defined, or are overly broadly defined: img-src |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-HsGL26oue8yfTBW-8s6L4w' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | The following directives either allow wildcard sources (or ancestors), are not defined, or are overly broadly defined: img-src |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce--JTFQaHR-aLFj__tvJ6LtA' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | The following directives either allow wildcard sources (or ancestors), are not defined, or are overly broadly defined: img-src |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-bdzes4bj_zxg1VUXJiT3sg' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | The following directives either allow wildcard sources (or ancestors), are not defined, or are overly broadly defined: img-src |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-19TatSDuZte3mErlUQeysQ' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | The following directives either allow wildcard sources (or ancestors), are not defined, or are overly broadly defined: img-src |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-BI7duYrk-3k1hJgY1VLCFA' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | The following directives either allow wildcard sources (or ancestors), are not defined, or are overly broadly defined: img-src |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-F9jeMhrJQB5gD4HvqbVxCg' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | The following directives either allow wildcard sources (or ancestors), are not defined, or are overly broadly defined: img-src |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-wWDt-QxDCJKt4B4cVE9cvA' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | The following directives either allow wildcard sources (or ancestors), are not defined, or are overly broadly defined: img-src |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-xSjXQb200XOKjCJdS8NVXQ' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | The following directives either allow wildcard sources (or ancestors), are not defined, or are overly broadly defined: img-src |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-A0MccgYoclgI2GHjo7Eyog' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | The following directives either allow wildcard sources (or ancestors), are not defined, or are overly broadly defined: img-src |
| Instances | 10 |
| Solution |
Ensure that your web server, application server, load balancer, etc. is properly configured to set the Content-Security-Policy header.
|
| Reference |
https://www.w3.org/TR/CSP/
https://caniuse.com/#search=content+security+policy https://content-security-policy.com/ https://github.com/HtmlUnit/htmlunit-csp https://web.dev/articles/csp#resource-options |
| CWE Id | 693 |
| WASC Id | 15 |
| Plugin Id | 10055 |
|
Medium |
CSP: style-src unsafe-inline |
|---|---|
| Description |
Content Security Policy (CSP) is an added layer of security that helps to detect and mitigate certain types of attacks. Including (but not limited to) Cross Site Scripting (XSS), and data injection attacks. These attacks are used for everything from data theft to site defacement or distribution of malware. CSP provides a set of standard HTTP headers that allow website owners to declare approved sources of content that browsers should be allowed to load on that page — covered types are JavaScript, CSS, HTML frames, fonts, images and embeddable objects such as Java applets, ActiveX, audio and video files.
|
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-ATHDLrFBNlu5OnFyCHnJQQ' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | style-src includes unsafe-inline. |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-HsGL26oue8yfTBW-8s6L4w' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | style-src includes unsafe-inline. |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce--JTFQaHR-aLFj__tvJ6LtA' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | style-src includes unsafe-inline. |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-bdzes4bj_zxg1VUXJiT3sg' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | style-src includes unsafe-inline. |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-19TatSDuZte3mErlUQeysQ' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | style-src includes unsafe-inline. |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-BI7duYrk-3k1hJgY1VLCFA' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | style-src includes unsafe-inline. |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-F9jeMhrJQB5gD4HvqbVxCg' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | style-src includes unsafe-inline. |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-wWDt-QxDCJKt4B4cVE9cvA' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | style-src includes unsafe-inline. |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-xSjXQb200XOKjCJdS8NVXQ' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | style-src includes unsafe-inline. |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Content-Security-Policy |
| Attack | |
| Evidence | default-src 'self'; script-src 'self' 'nonce-A0MccgYoclgI2GHjo7Eyog' 'strict-dynamic' https://js.paystack.co; style-src 'self' https://fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https:; connect-src 'self' https://api.staging.babaijebubet.com https://api.babaijebubet.com https://*.netlify.app https://api.paystack.co https://api.flutterwave.com https://checkout.flutterwave.com; frame-src 'self' https://checkout.paystack.com https://standard.paystack.co https://checkout.flutterwave.com; frame-ancestors 'none'; object-src 'none'; base-uri 'self'; form-action 'self' https://checkout.paystack.com https://checkout.flutterwave.com; upgrade-insecure-requests |
| Other Info | style-src includes unsafe-inline. |
| Instances | 10 |
| Solution |
Ensure that your web server, application server, load balancer, etc. is properly configured to set the Content-Security-Policy header.
|
| Reference |
https://www.w3.org/TR/CSP/
https://caniuse.com/#search=content+security+policy https://content-security-policy.com/ https://github.com/HtmlUnit/htmlunit-csp https://web.dev/articles/csp#resource-options |
| CWE Id | 693 |
| WASC Id | 15 |
| Plugin Id | 10055 |
|
Medium |
Hidden File Found |
|---|---|
| Description |
A sensitive file was identified as accessible or available. This may leak administrative, configuration, or credential information which can be leveraged by a malicious individual to further attack the system or conduct social engineering efforts.
|
| URL | https://staging.babaijebubet.com/._darcs |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | HTTP/1.1 200 OK |
| Other Info | |
| URL | https://staging.babaijebubet.com/.bzr |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | HTTP/1.1 200 OK |
| Other Info | |
| URL | https://staging.babaijebubet.com/.hg |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | HTTP/1.1 200 OK |
| Other Info | |
| URL | https://staging.babaijebubet.com/BitKeeper |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | HTTP/1.1 200 OK |
| Other Info | |
| Instances | 4 |
| Solution |
Consider whether or not the component is actually required in production, if it isn't then disable it. If it is then ensure access to it requires appropriate authentication and authorization, or limit exposure to internal systems or specific source IPs, etc.
|
| Reference | https://blog.hboeck.de/archives/892-Introducing-Snallygaster-a-Tool-to-Scan-for-Secrets-on-Web-Servers.html |
| CWE Id | 538 |
| WASC Id | 13 |
| Plugin Id | 40035 |
|
Low |
Private IP Disclosure |
|---|---|
| Description |
A private IP (such as 10.x.x.x, 172.x.x.x, 192.168.x.x) or an Amazon EC2 private hostname (for example, ip-10-0-56-78) has been found in the HTTP response body. This information might be helpful for further attacks targeting internal systems.
|
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 10.77.9.61 |
| Other Info | 10.77.9.61 10.75.94.05 |
| Instances | 1 |
| Solution |
Remove the private IP address from the HTTP response body. For comments, use JSP/ASP/PHP comment instead of HTML/JavaScript comment which can be seen by client browsers.
|
| Reference | https://datatracker.ietf.org/doc/html/rfc1918 |
| CWE Id | 497 |
| WASC Id | 13 |
| Plugin Id | 2 |
|
Low |
Timestamp Disclosure - Unix |
|---|---|
| Description |
A timestamp was disclosed by the application/web server. - Unix
|
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1461121720 |
| Other Info | 1461121720, which evaluates to: 2016-04-20 04:08:40. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1461446943 |
| Other Info | 1461446943, which evaluates to: 2016-04-23 22:29:03. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1463355134 |
| Other Info | 1463355134, which evaluates to: 2016-05-16 00:32:14. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1464375394 |
| Other Info | 1464375394, which evaluates to: 2016-05-27 19:56:34. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1464380207 |
| Other Info | 1464380207, which evaluates to: 2016-05-27 21:16:47. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1467031594 |
| Other Info | 1467031594, which evaluates to: 2016-06-27 13:46:34. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1469046755 |
| Other Info | 1469046755, which evaluates to: 2016-07-20 21:32:35. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1471733935 |
| Other Info | 1471733935, which evaluates to: 2016-08-20 23:58:55. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1475708069 |
| Other Info | 1475708069, which evaluates to: 2016-10-05 23:54:29. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1476395008 |
| Other Info | 1476395008, which evaluates to: 2016-10-13 22:43:28. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1476395009 |
| Other Info | 1476395009, which evaluates to: 2016-10-13 22:43:29. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1480756522 |
| Other Info | 1480756522, which evaluates to: 2016-12-03 09:15:22. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1483529935 |
| Other Info | 1483529935, which evaluates to: 2017-01-04 11:38:55. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1491858159 |
| Other Info | 1491858159, which evaluates to: 2017-04-10 22:02:39. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1495573769 |
| Other Info | 1495573769, which evaluates to: 2017-05-23 22:09:29. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1495990901 |
| Other Info | 1495990901, which evaluates to: 2017-05-28 18:01:41. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1501505948 |
| Other Info | 1501505948, which evaluates to: 2017-07-31 13:59:08. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1507829418 |
| Other Info | 1507829418, which evaluates to: 2017-10-12 18:30:18. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1508970993 |
| Other Info | 1508970993, which evaluates to: 2017-10-25 23:36:33. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1510255612 |
| Other Info | 1510255612, which evaluates to: 2017-11-09 19:26:52. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1514023603 |
| Other Info | 1514023603, which evaluates to: 2017-12-23 10:06:43. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1517677493 |
| Other Info | 1517677493, which evaluates to: 2018-02-03 17:04:53. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1518500249 |
| Other Info | 1518500249, which evaluates to: 2018-02-13 05:37:29. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1518925132 |
| Other Info | 1518925132, which evaluates to: 2018-02-18 03:38:52. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1522805485 |
| Other Info | 1522805485, which evaluates to: 2018-04-04 02:31:25. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1522871579 |
| Other Info | 1522871579, which evaluates to: 2018-04-04 20:52:59. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1524020338 |
| Other Info | 1524020338, which evaluates to: 2018-04-18 03:58:58. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1531092325 |
| Other Info | 1531092325, which evaluates to: 2018-07-09 00:25:25. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1533947780 |
| Other Info | 1533947780, which evaluates to: 2018-08-11 01:36:20. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1535977030 |
| Other Info | 1535977030, which evaluates to: 2018-09-03 13:17:10. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1537002063 |
| Other Info | 1537002063, which evaluates to: 2018-09-15 10:01:03. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1539241949 |
| Other Info | 1539241949, which evaluates to: 2018-10-11 08:12:29. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1541459225 |
| Other Info | 1541459225, which evaluates to: 2018-11-05 23:07:05. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1546045734 |
| Other Info | 1546045734, which evaluates to: 2018-12-29 01:08:54. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1548603684 |
| Other Info | 1548603684, which evaluates to: 2019-01-27 15:41:24. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1549556828 |
| Other Info | 1549556828, which evaluates to: 2019-02-07 16:27:08. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1555064734 |
| Other Info | 1555064734, which evaluates to: 2019-04-12 11:25:34. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1555081692 |
| Other Info | 1555081692, which evaluates to: 2019-04-12 16:08:12. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1565136089 |
| Other Info | 1565136089, which evaluates to: 2019-08-07 01:01:29. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1569222167 |
| Other Info | 1569222167, which evaluates to: 2019-09-23 08:02:47. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1575780402 |
| Other Info | 1575780402, which evaluates to: 2019-12-08 04:46:42. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1575990012 |
| Other Info | 1575990012, which evaluates to: 2019-12-10 15:00:12. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1583128258 |
| Other Info | 1583128258, which evaluates to: 2020-03-02 05:50:58. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1593081372 |
| Other Info | 1593081372, which evaluates to: 2020-06-25 11:36:12. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1594956187 |
| Other Info | 1594956187, which evaluates to: 2020-07-17 04:23:07. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1595750129 |
| Other Info | 1595750129, which evaluates to: 2020-07-26 08:55:29. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1607167915 |
| Other Info | 1607167915, which evaluates to: 2020-12-05 11:31:55. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1610612736 |
| Other Info | 1610612736, which evaluates to: 2021-01-14 08:25:36. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1610612737 |
| Other Info | 1610612737, which evaluates to: 2021-01-14 08:25:37. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1610833997 |
| Other Info | 1610833997, which evaluates to: 2021-01-16 21:53:17. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1613405280 |
| Other Info | 1613405280, which evaluates to: 2021-02-15 16:08:00. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1614419982 |
| Other Info | 1614419982, which evaluates to: 2021-02-27 09:59:42. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1617046695 |
| Other Info | 1617046695, which evaluates to: 2021-03-29 20:38:15. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1618508792 |
| Other Info | 1618508792, which evaluates to: 2021-04-15 18:46:32. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1628790961 |
| Other Info | 1628790961, which evaluates to: 2021-08-12 18:56:01. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1637815568 |
| Other Info | 1637815568, which evaluates to: 2021-11-25 04:46:08. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1638401717 |
| Other Info | 1638401717, which evaluates to: 2021-12-01 23:35:17. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1641548236 |
| Other Info | 1641548236, which evaluates to: 2022-01-07 09:37:16. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1641649973 |
| Other Info | 1641649973, which evaluates to: 2022-01-08 13:52:53. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1648197032 |
| Other Info | 1648197032, which evaluates to: 2022-03-25 08:30:32. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1653985193 |
| Other Info | 1653985193, which evaluates to: 2022-05-31 09:19:53. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1654270250 |
| Other Info | 1654270250, which evaluates to: 2022-06-03 16:30:50. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1655181056 |
| Other Info | 1655181056, which evaluates to: 2022-06-14 05:30:56. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1660621633 |
| Other Info | 1660621633, which evaluates to: 2022-08-16 04:47:13. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1661551462 |
| Other Info | 1661551462, which evaluates to: 2022-08-26 23:04:22. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1667834072 |
| Other Info | 1667834072, which evaluates to: 2022-11-07 15:14:32. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1668267050 |
| Other Info | 1668267050, which evaluates to: 2022-11-12 15:30:50. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1669523910 |
| Other Info | 1669523910, which evaluates to: 2022-11-27 04:38:30. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1676153920 |
| Other Info | 1676153920, which evaluates to: 2023-02-11 22:18:40. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1676643554 |
| Other Info | 1676643554, which evaluates to: 2023-02-17 14:19:14. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1679025792 |
| Other Info | 1679025792, which evaluates to: 2023-03-17 04:03:12. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1682292957 |
| Other Info | 1682292957, which evaluates to: 2023-04-24 00:35:57. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1685915746 |
| Other Info | 1685915746, which evaluates to: 2023-06-04 22:55:46. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1686838959 |
| Other Info | 1686838959, which evaluates to: 2023-06-15 15:22:39. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1689216846 |
| Other Info | 1689216846, which evaluates to: 2023-07-13 03:54:06. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1692713982 |
| Other Info | 1692713982, which evaluates to: 2023-08-22 15:19:42. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1694076839 |
| Other Info | 1694076839, which evaluates to: 2023-09-07 09:53:59. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1695183700 |
| Other Info | 1695183700, which evaluates to: 2023-09-20 05:21:40. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1699332808 |
| Other Info | 1699332808, which evaluates to: 2023-11-07 04:53:28. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1699691293 |
| Other Info | 1699691293, which evaluates to: 2023-11-11 08:28:13. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1700274565 |
| Other Info | 1700274565, which evaluates to: 2023-11-18 02:29:25. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1700445008 |
| Other Info | 1700445008, which evaluates to: 2023-11-20 01:50:08. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1701076831 |
| Other Info | 1701076831, which evaluates to: 2023-11-27 09:20:31. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1712269319 |
| Other Info | 1712269319, which evaluates to: 2024-04-04 23:21:59. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1713906067 |
| Other Info | 1713906067, which evaluates to: 2024-04-23 22:01:07. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1714227617 |
| Other Info | 1714227617, which evaluates to: 2024-04-27 15:20:17. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1719377915 |
| Other Info | 1719377915, which evaluates to: 2024-06-26 05:58:35. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1721773893 |
| Other Info | 1721773893, which evaluates to: 2024-07-23 23:31:33. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1724537150 |
| Other Info | 1724537150, which evaluates to: 2024-08-24 23:05:50. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1728879713 |
| Other Info | 1728879713, which evaluates to: 2024-10-14 05:21:53. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1729034894 |
| Other Info | 1729034894, which evaluates to: 2024-10-16 00:28:14. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1731405415 |
| Other Info | 1731405415, which evaluates to: 2024-11-12 09:56:55. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1732584193 |
| Other Info | 1732584193, which evaluates to: 2024-11-26 01:23:13. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1734335097 |
| Other Info | 1734335097, which evaluates to: 2024-12-16 07:44:57. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1738483198 |
| Other Info | 1738483198, which evaluates to: 2025-02-02 07:59:58. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1744830464 |
| Other Info | 1744830464, which evaluates to: 2025-04-16 20:07:44. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1744830465 |
| Other Info | 1744830465, which evaluates to: 2025-04-16 20:07:45. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1745797284 |
| Other Info | 1745797284, which evaluates to: 2025-04-28 00:41:24. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1747873779 |
| Other Info | 1747873779, which evaluates to: 2025-05-22 01:29:39. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1749149687 |
| Other Info | 1749149687, which evaluates to: 2025-06-05 19:54:47. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1749200295 |
| Other Info | 1749200295, which evaluates to: 2025-06-06 09:58:15. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1750603025 |
| Other Info | 1750603025, which evaluates to: 2025-06-22 15:37:05. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1753167236 |
| Other Info | 1753167236, which evaluates to: 2025-07-22 07:53:56. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1754252060 |
| Other Info | 1754252060, which evaluates to: 2025-08-03 21:14:20. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1756076034 |
| Other Info | 1756076034, which evaluates to: 2025-08-24 23:53:54. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1759253602 |
| Other Info | 1759253602, which evaluates to: 2025-09-30 18:33:22. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1761308591 |
| Other Info | 1761308591, which evaluates to: 2025-10-24 13:23:11. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1762651403 |
| Other Info | 1762651403, which evaluates to: 2025-11-09 01:23:23. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1767581616 |
| Other Info | 1767581616, which evaluates to: 2026-01-05 02:53:36. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1770335741 |
| Other Info | 1770335741, which evaluates to: 2026-02-05 23:55:41. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1771706367 |
| Other Info | 1771706367, which evaluates to: 2026-02-21 20:39:27. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1774776394 |
| Other Info | 1774776394, which evaluates to: 2026-03-29 10:26:34. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1774941330 |
| Other Info | 1774941330, which evaluates to: 2026-03-31 08:15:30. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1779033703 |
| Other Info | 1779033703, which evaluates to: 2026-05-17 17:01:43. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1779581495 |
| Other Info | 1779581495, which evaluates to: 2026-05-24 01:11:35. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1780907670 |
| Other Info | 1780907670, which evaluates to: 2026-06-08 09:34:30. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1781354906 |
| Other Info | 1781354906, which evaluates to: 2026-06-13 13:48:26. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1781952180 |
| Other Info | 1781952180, which evaluates to: 2026-06-20 11:43:00. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1783734482 |
| Other Info | 1783734482, which evaluates to: 2026-07-11 02:48:02. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1797494240 |
| Other Info | 1797494240, which evaluates to: 2026-12-17 07:57:20. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1800124847 |
| Other Info | 1800124847, which evaluates to: 2027-01-16 18:40:47. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1802137761 |
| Other Info | 1802137761, which evaluates to: 2027-02-09 01:49:21. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1804592342 |
| Other Info | 1804592342, which evaluates to: 2027-03-09 11:39:02. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1804850592 |
| Other Info | 1804850592, which evaluates to: 2027-03-12 11:23:12. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1807016891 |
| Other Info | 1807016891, which evaluates to: 2027-04-06 14:08:11. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1814182875 |
| Other Info | 1814182875, which evaluates to: 2027-06-28 12:41:15. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1814351708 |
| Other Info | 1814351708, which evaluates to: 2027-06-30 11:35:08. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1816402316 |
| Other Info | 1816402316, which evaluates to: 2027-07-24 05:11:56. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1817252668 |
| Other Info | 1817252668, which evaluates to: 2027-08-03 01:24:28. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1822297739 |
| Other Info | 1822297739, which evaluates to: 2027-09-30 10:48:59. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1835478071 |
| Other Info | 1835478071, which evaluates to: 2028-02-29 23:01:11. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1836072691 |
| Other Info | 1836072691, which evaluates to: 2028-03-07 20:11:31. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1841049896 |
| Other Info | 1841049896, which evaluates to: 2028-05-04 11:44:56. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1845252383 |
| Other Info | 1845252383, which evaluates to: 2028-06-22 03:06:23. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1846949527 |
| Other Info | 1846949527, which evaluates to: 2028-07-11 18:32:07. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1854211946 |
| Other Info | 1854211946, which evaluates to: 2028-10-03 19:52:26. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1856431235 |
| Other Info | 1856431235, which evaluates to: 2028-10-29 11:20:35. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1859775393 |
| Other Info | 1859775393, which evaluates to: 2028-12-07 04:16:33. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1861159788 |
| Other Info | 1861159788, which evaluates to: 2028-12-23 04:49:48. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1862657033 |
| Other Info | 1862657033, which evaluates to: 2029-01-09 12:43:53. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1866414978 |
| Other Info | 1866414978, which evaluates to: 2029-02-22 00:36:18. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1866599683 |
| Other Info | 1866599683, which evaluates to: 2029-02-24 03:54:43. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1876281319 |
| Other Info | 1876281319, which evaluates to: 2029-06-16 06:15:19. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1879048192 |
| Other Info | 1879048192, which evaluates to: 2029-07-18 06:49:52. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1879048193 |
| Other Info | 1879048193, which evaluates to: 2029-07-18 06:49:53. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1894007588 |
| Other Info | 1894007588, which evaluates to: 2030-01-07 09:13:08. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1895095763 |
| Other Info | 1895095763, which evaluates to: 2030-01-19 23:29:23. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1897031941 |
| Other Info | 1897031941, which evaluates to: 2030-02-11 09:19:01. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1899447441 |
| Other Info | 1899447441, which evaluates to: 2030-03-11 08:17:21. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1899903192 |
| Other Info | 1899903192, which evaluates to: 2030-03-16 14:53:12. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1901547113 |
| Other Info | 1901547113, which evaluates to: 2030-04-04 16:31:53. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1904987480 |
| Other Info | 1904987480, which evaluates to: 2030-05-14 12:11:20. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1908823572 |
| Other Info | 1908823572, which evaluates to: 2030-06-27 21:46:12. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1910503582 |
| Other Info | 1910503582, which evaluates to: 2030-07-17 08:26:22. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1914138554 |
| Other Info | 1914138554, which evaluates to: 2030-08-28 10:09:14. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1917689273 |
| Other Info | 1917689273, which evaluates to: 2030-10-08 12:27:53. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1921955416 |
| Other Info | 1921955416, which evaluates to: 2030-11-26 20:30:16. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1925078388 |
| Other Info | 1925078388, which evaluates to: 2031-01-01 23:59:48. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1927990952 |
| Other Info | 1927990952, which evaluates to: 2031-02-04 17:02:32. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1946737175 |
| Other Info | 1946737175, which evaluates to: 2031-09-09 17:19:35. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1947078029 |
| Other Info | 1947078029, which evaluates to: 2031-09-13 16:00:29. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1947742710 |
| Other Info | 1947742710, which evaluates to: 2031-09-21 08:38:30. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1955562222 |
| Other Info | 1955562222, which evaluates to: 2031-12-20 19:43:42. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1963543593 |
| Other Info | 1963543593, which evaluates to: 2032-03-22 04:46:33. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1966332200 |
| Other Info | 1966332200, which evaluates to: 2032-04-23 12:23:20. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1970579870 |
| Other Info | 1970579870, which evaluates to: 2032-06-11 16:17:50. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1979897079 |
| Other Info | 1979897079, which evaluates to: 2032-09-27 12:24:39. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1983633131 |
| Other Info | 1983633131, which evaluates to: 2032-11-09 17:12:11. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1986661051 |
| Other Info | 1986661051, which evaluates to: 2032-12-14 18:17:31. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1996064986 |
| Other Info | 1996064986, which evaluates to: 2033-04-02 15:29:46. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 1998579484 |
| Other Info | 1998579484, which evaluates to: 2033-05-01 17:58:04. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2000651841 |
| Other Info | 2000651841, which evaluates to: 2033-05-25 17:37:21. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2001055236 |
| Other Info | 2001055236, which evaluates to: 2033-05-30 09:40:36. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2001714738 |
| Other Info | 2001714738, which evaluates to: 2033-06-07 00:52:18. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2003034995 |
| Other Info | 2003034995, which evaluates to: 2033-06-22 07:36:35. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2006996926 |
| Other Info | 2006996926, which evaluates to: 2033-08-07 04:08:46. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2007800933 |
| Other Info | 2007800933, which evaluates to: 2033-08-16 11:28:53. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2007998917 |
| Other Info | 2007998917, which evaluates to: 2033-08-18 18:28:37. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2008414854 |
| Other Info | 2008414854, which evaluates to: 2033-08-23 14:00:54. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2012875353 |
| Other Info | 2012875353, which evaluates to: 2033-10-14 05:02:33. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2013265920 |
| Other Info | 2013265920, which evaluates to: 2033-10-18 17:32:00. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2013265921 |
| Other Info | 2013265921, which evaluates to: 2033-10-18 17:32:01. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2016342300 |
| Other Info | 2016342300, which evaluates to: 2033-11-23 07:05:00. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2019080857 |
| Other Info | 2019080857, which evaluates to: 2033-12-24 23:47:37. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2019492241 |
| Other Info | 2019492241, which evaluates to: 2033-12-29 18:04:01. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2024104815 |
| Other Info | 2024104815, which evaluates to: 2034-02-21 03:20:15. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2024746970 |
| Other Info | 2024746970, which evaluates to: 2034-02-28 13:42:50. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2025931657 |
| Other Info | 2025931657, which evaluates to: 2034-03-14 06:47:37. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2031300136 |
| Other Info | 2031300136, which evaluates to: 2034-05-15 11:02:16. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2050118529 |
| Other Info | 2050118529, which evaluates to: 2034-12-19 05:22:09. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2052605720 |
| Other Info | 2052605720, which evaluates to: 2035-01-17 00:15:20. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2053994217 |
| Other Info | 2053994217, which evaluates to: 2035-02-02 01:56:57. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2058025392 |
| Other Info | 2058025392, which evaluates to: 2035-03-20 17:43:12. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2062231137 |
| Other Info | 2062231137, which evaluates to: 2035-05-08 10:58:57. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2062866102 |
| Other Info | 2062866102, which evaluates to: 2035-05-15 19:21:42. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2064951626 |
| Other Info | 2064951626, which evaluates to: 2035-06-08 22:40:26. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2067696032 |
| Other Info | 2067696032, which evaluates to: 2035-07-10 17:00:32. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2069144605 |
| Other Info | 2069144605, which evaluates to: 2035-07-27 11:23:25. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2073328063 |
| Other Info | 2073328063, which evaluates to: 2035-09-13 21:27:43. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2087905683 |
| Other Info | 2087905683, which evaluates to: 2036-02-29 13:48:03. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2088578344 |
| Other Info | 2088578344, which evaluates to: 2036-03-08 08:39:04. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2089974820 |
| Other Info | 2089974820, which evaluates to: 2036-03-24 12:33:40. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | 2091462646 |
| Other Info | 2091462646, which evaluates to: 2036-04-10 18:50:46. |
| Instances | 203 |
| Solution |
Manually confirm that the timestamp data is not sensitive, and that the data cannot be aggregated to disclose exploitable patterns.
|
| Reference | https://cwe.mitre.org/data/definitions/200.html |
| CWE Id | 497 |
| WASC Id | 13 |
| Plugin Id | 10096 |
|
Low |
ZAP is Out of Date |
|---|---|
| Description |
The version of ZAP you are using to test your app is out of date and is no longer being updated.
The risk level is set based on how out of date your ZAP version is.
|
| URL | https://staging.babaijebubet.com/* |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | |
| Other Info | The latest version of ZAP is 2.17.0 |
| Instances | 1 |
| Solution |
Download the latest version of ZAP from https://www.zaproxy.org/download/ and install it.
|
| Reference | https://www.zaproxy.org/download/ |
| CWE Id | 1104 |
| WASC Id | 45 |
| Plugin Id | 10116 |
|
Informational |
Information Disclosure - Suspicious Comments |
|---|---|
| Description |
The response appears to contain suspicious comments which may help an attacker.
|
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | bug |
| Other Info | The following pattern was used: \bBUG\b and was detected in likely comment: "//github.com/facebook/react/issues/3236)."]},de=function(J,re){Object.defineProperty(q.prototype,J,{get:function(){I("%s(...) is", see evidence field for the suspicious comment/snippet. |
| Instances | 1 |
| Solution |
Remove all comments that return information that may help an attacker and fix any underlying problems they refer to.
|
| Reference | |
| CWE Id | 615 |
| WASC Id | 13 |
| Plugin Id | 10027 |
|
Informational |
Modern Web Application |
|---|---|
| Description |
The application appears to be a modern web application. If you need to explore it automatically then the Ajax Spider may well be more effective than the standard one.
|
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | <script nonce="ATHDLrFBNlu5OnFyCHnJQQ" type="module" crossorigin src="/assets/index-98c382ee.js"></script> |
| Other Info | No links have been found while there are scripts, which is an indication that this is a modern web application. |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | <script nonce="HsGL26oue8yfTBW-8s6L4w" type="module" crossorigin src="/assets/index-98c382ee.js"></script> |
| Other Info | No links have been found while there are scripts, which is an indication that this is a modern web application. |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | <script nonce="-JTFQaHR-aLFj__tvJ6LtA" type="module" crossorigin src="/assets/index-98c382ee.js"></script> |
| Other Info | No links have been found while there are scripts, which is an indication that this is a modern web application. |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | <script nonce="bdzes4bj_zxg1VUXJiT3sg" type="module" crossorigin src="/assets/index-98c382ee.js"></script> |
| Other Info | No links have been found while there are scripts, which is an indication that this is a modern web application. |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | <script nonce="19TatSDuZte3mErlUQeysQ" type="module" crossorigin src="/assets/index-98c382ee.js"></script> |
| Other Info | No links have been found while there are scripts, which is an indication that this is a modern web application. |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | <script nonce="BI7duYrk-3k1hJgY1VLCFA" type="module" crossorigin src="/assets/index-98c382ee.js"></script> |
| Other Info | No links have been found while there are scripts, which is an indication that this is a modern web application. |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | <script nonce="F9jeMhrJQB5gD4HvqbVxCg" type="module" crossorigin src="/assets/index-98c382ee.js"></script> |
| Other Info | No links have been found while there are scripts, which is an indication that this is a modern web application. |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | <script nonce="wWDt-QxDCJKt4B4cVE9cvA" type="module" crossorigin src="/assets/index-98c382ee.js"></script> |
| Other Info | No links have been found while there are scripts, which is an indication that this is a modern web application. |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | <script nonce="xSjXQb200XOKjCJdS8NVXQ" type="module" crossorigin src="/assets/index-98c382ee.js"></script> |
| Other Info | No links have been found while there are scripts, which is an indication that this is a modern web application. |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | <script nonce="A0MccgYoclgI2GHjo7Eyog" type="module" crossorigin src="/assets/index-98c382ee.js"></script> |
| Other Info | No links have been found while there are scripts, which is an indication that this is a modern web application. |
| Instances | 10 |
| Solution |
This is an informational alert and so no changes are required.
|
| Reference | |
| CWE Id | |
| WASC Id | |
| Plugin Id | 10109 |
|
Informational |
Retrieved from Cache |
|---|---|
| Description |
The content was retrieved from a shared cache. If the response data is sensitive, personal or user-specific, this may result in sensitive information being leaked. In some cases, this may even result in a user gaining complete control of the session of another user, depending on the configuration of the caching components in use in their environment. This is primarily an issue where caching servers such as "proxy" caches are configured on the local network. This configuration is typically found in corporate or educational environments, for instance.
|
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | Age: 0 |
| Other Info | The presence of the 'Age' header indicates that a HTTP/1.1 compliant caching server is in use. |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | Age: 1 |
| Other Info | The presence of the 'Age' header indicates that a HTTP/1.1 compliant caching server is in use. |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | Age: 0 |
| Other Info | The presence of the 'Age' header indicates that a HTTP/1.1 compliant caching server is in use. |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | Age: 0 |
| Other Info | The presence of the 'Age' header indicates that a HTTP/1.1 compliant caching server is in use. |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | Age: 0 |
| Other Info | The presence of the 'Age' header indicates that a HTTP/1.1 compliant caching server is in use. |
| URL | https://staging.babaijebubet.com/assets/index-a1e6ea79.css |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | Age: 0 |
| Other Info | The presence of the 'Age' header indicates that a HTTP/1.1 compliant caching server is in use. |
| URL | https://staging.babaijebubet.com/baba-ijebu.png |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | Age: 0 |
| Other Info | The presence of the 'Age' header indicates that a HTTP/1.1 compliant caching server is in use. |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | Age: 0 |
| Other Info | The presence of the 'Age' header indicates that a HTTP/1.1 compliant caching server is in use. |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | Age: 0 |
| Other Info | The presence of the 'Age' header indicates that a HTTP/1.1 compliant caching server is in use. |
| URL | https://staging.babaijebubet.com/robots.txt |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | Age: 1 |
| Other Info | The presence of the 'Age' header indicates that a HTTP/1.1 compliant caching server is in use. |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | Age: 0 |
| Other Info | The presence of the 'Age' header indicates that a HTTP/1.1 compliant caching server is in use. |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | Age: 1 |
| Other Info | The presence of the 'Age' header indicates that a HTTP/1.1 compliant caching server is in use. |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | |
| Attack | |
| Evidence | Age: 0 |
| Other Info | The presence of the 'Age' header indicates that a HTTP/1.1 compliant caching server is in use. |
| Instances | 13 |
| Solution |
Validate that the response does not contain sensitive, personal or user-specific information. If it does, consider the use of the following HTTP response headers, to limit, or prevent the content being stored and retrieved from the cache by another user:
Cache-Control: no-cache, no-store, must-revalidate, private
Pragma: no-cache
Expires: 0
This configuration directs both HTTP 1.0 and HTTP 1.1 compliant caching servers to not store the response, and to not retrieve the response (without validation) from the cache, in response to a similar request.
|
| Reference |
https://datatracker.ietf.org/doc/html/rfc7234
https://datatracker.ietf.org/doc/html/rfc7231 https://www.rfc-editor.org/rfc/rfc9110.html |
| CWE Id | 525 |
| WASC Id | |
| Plugin Id | 10050 |
|
Informational |
User Agent Fuzzer |
|---|---|
| Description |
Check for differences in response based on fuzzed User Agent (eg. mobile sites, access as a Search Engine Crawler). Compares the response statuscode and the hashcode of the response body with the original response.
|
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/* |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/* |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/* |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/* |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/* |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/* |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/* |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/*.json$ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/*.json$ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/*.json$ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/*.json$ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/account/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/admin/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/api/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/assets |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/assets |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/assets |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/assets |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/assets/index-98c382ee.js |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/deposit/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/private/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/robots.txt |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/robots.txt |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/robots.txt |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/robots.txt |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/robots.txt |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/robots.txt |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/robots.txt |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/robots.txt |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/robots.txt |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/robots.txt |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/security/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/sitemap.xml |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Trident/7.0; rv:11.0) like Gecko |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3739.0 Safari/537.36 Edg/75.0.109.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/91.0 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp) |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; CPU iPhone OS 8_0_2 like Mac OS X) AppleWebKit/600.1.4 (KHTML, like Gecko) Version/8.0 Mobile/12A366 Safari/600.1.4 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16 |
| Evidence | |
| Other Info | |
| URL | https://staging.babaijebubet.com/withdraw/ |
| Method | GET |
| Parameter | Header User-Agent |
| Attack | msnbot/1.1 (+http://search.msn.com/msnbot.htm) |
| Evidence | |
| Other Info | |
| Instances | 187 |
| Solution | |
| Reference | https://owasp.org/wstg |
| CWE Id | |
| WASC Id | |
| Plugin Id | 10104 |