← Port Encyclopedia
8009
AJP
TCP
Web
Critical Risk
Apache JServ Protocol — Tomcat AJP connector, GhostCat (CVE-2020-1938)
🔍 How to Scan Port 8009
nmap -sV -p 8009 target
nmap -sV -sC --script=banner -p 8009 target
nc -zv target 8009
🛡️ Security Considerations
- Scan port 8009 with
nmap -sVto identify the exact service and version - If AJP is not needed, close or firewall this port immediately
- Check for default credentials if a management interface runs on this port
- Use
searchsploit ajpto find known exploits - Monitor traffic on port 8009 with Wireshark or tcpdump for anomalies
- Ensure the service is patched to the latest version to prevent known CVE exploitation