id: admiralcloud-detect info: name: AdmiralCloud - Detect author: righettod severity: info description: | AdmiralCloud was detected. reference: - https://www.admiralcloud.com/en/ metadata: verified: true max-request: 1 shodan-query: http.title:"AdmiralCloud" tags: tech,admiralcloud,detect http: - method: GET path: - "{{BaseURL}}" redirects: true max-redirects: 2 matchers: - type: dsl dsl: - 'status_code == 200' - 'contains_any(to_lower(body), "content=\"admiralcloud", "admiralcloud")' condition: and extractors: - type: regex part: body group: 1 regex: - '\s+([0-9\.]+)' # digest: 4a0a004730450221008723f6d1a35c677250fcfdcae92154faf30a73277e94142eb3ca806414272d9602203d033356349acdef2e0bc3953c0d22cd93c9c4717ffe91fbb2d8245f64266efe:922c64590222798bb761d5b6d8e72950