The original post: /r/cybersecurity by /u/Orangensaft91 on 2024-10-10 22:53:16.

We just had a small ddos attack from approx. 40 servers that where bruteforcing our login page. After blocking all of them I checked shodan for some of the ips. Nearly all of them had tcp 5201 open, identifying as „JD-GUI Jaca decompiler“. Anyone has seen something like that before?