ADVISORY UNAUTH-2026-0014
TYPE exposure-class
PRODUCT Jupyter
SEVERITY CRITICAL
Jupyter notebook server exposed
published 2026-08-05 · updated 2026-08-05
Why it matters
An open Jupyter server is a terminal on your machine for anyone who finds it. Bots scan for it constantly (it is one of the most hijacked services on the internet) and use it for crypto mining or as a foothold into the rest of your network.
What a probe sees
GET :8888/api/status or /api/kernels answers 200 without a token.
Internet-facing exposure — observable from the public internet with GET-only probes (the same probes unauth.dev sends).
no-auth-by-design
In the wild
No honeypot telemetry for this service yet (in_the_wild: null in the dataset). We do not invent numbers. The block appears when the honeypot has real data.
Fix it
References
Cite this record
unauth.dev advisory UNAUTH-2026-0014 — published 2026-08 · CC-BY 4.0
Canonical URL: https://unauth.dev/advisories/UNAUTH-2026-0014. This record is part of the unauth.dev advisory dataset, published under CC-BY 4.0: attribute "unauth.dev / Raúl Acedo". Schema: additive-only within v1; this id will never be renumbered or reused.