Spring Boot Actuator Sensitive Endpoint Probe for 2026-07-18
Last Updated: 12:00 UTC
Spring Boot Actuator exposes management endpoints. heapdump returns a full JVM heap snapshot containing in-memory secrets. env returns all environment variables. gateway/routes is the RCE precursor for CVE-2022-22947 (Spring Cloud Gateway SPEL injection).
CVE References
MITRE ATT&CK
Tactic: Discovery (TA0007)
Technique: T1046 — Network Service Scanning
Observed URIs
Attackers by Country
| United States of America | 4 | 40.0% |
| Canada | 2 | 20.0% |
| Luxembourg | 1 | 10.0% |
| India | 1 | 10.0% |
| Australia | 1 | 10.0% |
| United Kingdom of Great Britain and Northern Ireland | 1 | 10.0% |
IP Address : ASN : City/Provider
-
104.28.211.186 : AS13335 cloudflare : United States of America
-
107.189.28.30 : AS53667 frantech solutions : Luxembourg
-
143.110.217.244 : AS14061 digitalocean llc : Toronto
-
143.244.168.161 : AS14061 digitalocean llc : North Bergen
-
147.182.149.75 : AS14061 digitalocean llc : Toronto
-
159.65.144.72 : AS14061 digitalocean llc : Bengaluru
-
167.71.81.114 : AS14061 digitalocean llc : Clifton
-
34.129.109.212 : AS396982 google : Melbourne
-
34.13.145.151 : ASNone : United States of America
-
64.227.32.66 : AS14061 digitalocean llc : London