August 3, 2026

Summary

Platform

  • You can now configure the cencli command line tool to use OAuth authentication. When you run censys auth login, you will be redirected to an authenticaiton page to select your account and approve the connection.

New fingerprints and risks

Added 12 new fingerprints to the Platform and three new risk fingerprints to ASM.

Note that new ASM risk fingerprints may be disabled by default in your workspace. Reference your risk type configuration in the ASM web console to review new risk types.

New fingerprints

TypeNameDescriptionQuery
softwareBitwarden ServerOpen-source password management server.Platform query
softwarejson-serverNode.js tool that serves a full REST API from a static JSON file, typically used for prototyping.Platform query
softwarenPerf ServerNetwork speed and performance testing server.Platform query
softwareAlinto SOGoOpen-source groupware server providing email, calendar, and contacts via web and native clients.Platform query
softwareTileServer GLOpen-source map tile server for rendering and serving vector and raster map tiles.Platform query
softwareFMSoft uniGUIDelphi framework for building web applications.Platform query
softwareVaultwardenLightweight, self-hosted Bitwarden-compatible password manager server written in Rust.Platform query
softwarePTC WindchillProduct lifecycle management (PLM) platform for managing engineering and product design data.Platform query
softwareDevExpressWeb application UI component framework.Platform query
softwareOpenJS Foundation ExpressNode.js web application framework.Platform query
softwareSearXNGOpen-source, privacy-focused metasearch engine that aggregates results from multiple search providers.Platform query
softwareVaadinJava framework for building web applications.Platform query

New risks

NameDescriptionQuery
Exposed json-server InstanceAn HTTP service is exposing json-server, a Node.js tool that serves a full CRUD REST API from a JSON file with no authentication by default. json-server is intended for local development and mocking only; exposing it to the internet permits unauthenticated read and write access to whatever data it is serving.
risks.name: "Exposed json-server Instance"
Exposed PTC Windchill ApplicationThis host exposes a PTC Windchill application. Windchill is a Product Lifecycle Management (PLM) platform that stores sensitive engineering and product design data, and should not be directly reachable from the public internet.
risks.name: "Exposed PTC Windchill Application"
Exposed Express Default PageThis host is exposing the default, unconfigured Express.js scaffold page in production. This indicates the application was never finished being configured or deployed, which may signal an abandoned or forgotten deployment.
risks.name: "Exposed Express Default Page"

Censys ARC Rapid Response

The Censys ARC team published information about the following issue.