Investigation Workspace

Entity: 43.163.127.190 (Ip)

Entity Details
Type
Ip
ASN
AS132203 - Tencent Building, Kejizhongyi Avenue
Threat Intelligence
Repeated, targeted access attempts to sensitive Spring Boot actuator and mapping endpoints. All 13 requests flagged by WAF, with bot impersonation detected, indicating high-confidence malicious activity.
Linked Entities
TLS Fingerprints (1)
Hostnames Targeted
Hostname Request Count
akamai.darcherif.fr 57
Paths Targeted (with Request Counts)
Path Request Count
staging/actuator/mappings 2
test/actuator/env 2
info 2
env 2
management/ 2
api/actuator/env 2
actuator/env 2
app/actuator/ 2
env.json 2
dev/actuator/env 2
test/mappings 2
staging/mappings 2
management/;/env 2
actuator/;/env 2
dev/actuator/ 2
mappings.json 2
api/actuator/ 2
app/actuator/env 2
v2/mappings 2
actuator/ 2
v2/actuator/env 2
management/mappings 2
test/actuator/mappings 2
api/actuator/;/env 2
actuator/mappings 2
v2/actuator/mappings 2
staging/actuator/env 2
management/env 2
/ 1
🚫

Block

Repeated, targeted access attempts to sensitive Spring Boot actuator and mapping endpoints. All 13 requests flagged by WAF, with bot impersonation detected, indicating high-confidence malicious activity.

2025-11-20 15:39:02