id: admiralcloud-detect info: name: AdmiralCloud - Detect author: righettod severity: info description: | AdmiralCloud was detected. reference: - https://www.admiralcloud.com/en/ metadata: verified: true max-request: 1 shodan-query: http.title:"AdmiralCloud" tags: tech,admiralcloud,detect http: - method: GET path: - "{{BaseURL}}" redirects: true max-redirects: 2 matchers: - type: dsl dsl: - 'status_code == 200' - 'contains_any(to_lower(body), "content=\"admiralcloud", "admiralcloud")' condition: and extractors: - type: regex part: body group: 1 regex: - '\s+([0-9\.]+)' # digest: 4b0a00483046022100fa29008f8e0fc134fbb02918f1ec6d9db6e33100bd047555d3d5c985499ca14d022100e4ef5eaa7ab38aab13f62c4e17b3cab6139cf9a9f346163ebab5171e9f31ae7c:922c64590222798bb761d5b6d8e72950