Investigation Workspace

Entity: 43.163.127.190 (Ip)

Entity Details
Type
Ip
ASN
AS132203 - Tencent Building, Kejizhongyi Avenue
Threat Intelligence
Repeated, targeted access attempts to sensitive Spring Boot actuator and mapping endpoints. All 13 requests flagged by WAF, with bot impersonation detected, indicating high-confidence malicious activity.
Linked Entities
TLS Fingerprints (1)
Hostnames Targeted
Hostname Request Count
akamai.darcherif.fr 57
Paths Targeted (with Hostname Counts)
Path Distinct Hostnames
env.json 1
api/actuator/;/env 1
env 1
management/ 1
api/actuator/env 1
actuator/env 1
app/actuator/ 1
info 1
dev/actuator/env 1
test/mappings 1
staging/mappings 1
management/;/env 1
actuator/;/env 1
dev/actuator/ 1
mappings.json 1
api/actuator/ 1
app/actuator/env 1
v2/mappings 1
actuator/ 1
v2/actuator/env 1
management/mappings 1
test/actuator/mappings 1
staging/actuator/mappings 1
actuator/mappings 1
v2/actuator/mappings 1
staging/actuator/env 1
test/actuator/env 1
management/env 1
🚫

Block

Repeated, targeted access attempts to sensitive Spring Boot actuator and mapping endpoints. All 13 requests flagged by WAF, with bot impersonation detected, indicating high-confidence malicious activity.

2025-11-20 15:39:02