🦞 OpenClaw Exposure Watchboard
This page lists publicly reachable active OpenClaw instances for defensive awareness. If this is your deployment, enable authentication, remove direct public exposure, and patch immediately.
Exposed Instances: 258305 Page: 2584 / 2584 (100 per page) Showing: 258301-258305 Last Imported: 05/03/2026, 01:19:10
Build With Vivgrid
Explore Vivgrid Ship Secure Enterprise AI Agents 10× Faster with vivgrid.com
Vivgrid gives you authentication, model gateway, tool control, cost tracking, and enterprise observability — everything you need to ship AI agents safely at scale.
Search Endpoint by IP
Input an IP, URL, or endpoint with port. We will parse the IP and query /query from Cloudflare Pages.
| Endpoint | Assistant Name | Country | auth_required | is_active | has_leaked_creds | asn | asn_name | org | first_seen | last_seen | asi_has_breach | asi_has_threat_actor | asi_threat_actors | asi_cves | asi_enriched_at | asi_domains |
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 43.165.166.•••:18789 | - | 🇯🇵 Japan | Yes | true | Clean | AS132203 | Tencent Building, Kejizhongyi Avenue | Aceville Pte Ltd | 16/02/2026, 00:55:31 | 23/02/2026, 10:37:14 | - | - | - | - | - | - |
| 8.208.33.•••:18789 | Assistant | 🇸🇬 Singapore | Yes | true | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud | 05/02/2026, 12:10:16 | 23/02/2026, 10:37:14 | No | No | - | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 06/02/2026, 05:38:58 | - |
| 106.52.158.•••:18789 | - | 🇨🇳 China mainland | - | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 22/02/2026, 06:17:20 | 23/02/2026, 10:37:14 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385 | 22/02/2026, 19:04:13 | bj189.cn, tencent.com |
| 84.118.95.•••:18789 | - | 🇩🇪 Germany | - | true | Leaked | AS3209 | International IP-Backbone of Vodafone | Unitymedia B2C Customer Pool | 22/02/2026, 06:17:20 | 23/02/2026, 10:37:14 | Yes | No | - | CVE-2016-10735, CVE-2018-14040, CVE-2018-14042, CVE-2018-20676, CVE-2018-20677, CVE-2019-8331, CVE-2024-6484, CVE-2024-6485 | 22/02/2026, 19:04:17 | airtel-vodafone.com, vodafone.ua, vodaphone.com.gh, vodafone.it, vodaone.com, myfritz.net, cw.com, fritz.com, vodafoneidea.com, vodafone.ie, vodafone.cz, vodafone-us.com, vodafonethree.com, duckdns.org, vodafone.co, vodafone.com, libertyglobal.com |
| 115.159.44.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 09/02/2026, 22:27:38 | 23/02/2026, 10:37:14 | - | - | - | - | - | - |