Seeing this service in your logs? Here is what it is.
What it is. OuiHeberg runs a known-vulnerability (CVE) scan against the servers of customers who subscribed to its security monitoring option. The scan is external, unauthenticated, and only checks for publicly known flaws in order to alert the customer concerned.
What it does not do. No exploitation attempt, no password testing, no data extraction. Requests are rate limited.
Where it comes from. Source addresses: 82.41.137.56. HTTP User-Agent: OuiHeberg-CVE-Scanner/1.0 (+https://cve-scanner.ouiheberg.com).
You are a OuiHeberg customer. You can change the frequency or turn the scan off from your customer area at any time.
This does not concern you, or you have a question. Write to us with the IP address involved. We answer quickly. security@ouiheberg.com
OuiHeberg · 2026