In practice, it could just be a simple URL request.
And the random texts that you see may be an auto-generated random string for conducting sessions. Since there is nothing wrong with the URL, and those sa
and ei
just mean that these get variables are assigned some values, which will then be used in your application, as this could be session management or other purposes.
From his face, this does not seem to be hacker material.
source share