中文

Website Security Scanner

Comprehensive security check · Vulnerability scan · Threat intel · SSL analysis

onesignal.com
Scan Time: 2026-05-21 04:13:22
Re-scan
70
Critical
2026-05-21 04:13:22

Security Issues Found

  • ⚠️被列入 1 个黑名单: AlienVault OTX
  • ⚠️[HIGH] 敏感路径暴露
  • ⚠️[LOW] 服务器信息泄露
  • ⚠️AlienVault OTX 发现 10 个恶意样本
  • ⚠️[MEDIUM] 缺少 HTTP 安全头

Recommendations

  • 💡检查 AlienVault OTX 社区报告
  • 💡限制对这些路径的访问或添加认证
  • 💡移除或修改 Server/X-Powered-By 响应头
  • 💡添加 DMARC 记录增强邮件安全
  • 💡配置 Web 服务器添加这些安全头
  • 💡申请从黑名单中移除,并修复安全问题

🌐Domain Info

Targetonesignal.com
Registeredonesignal.com
TLD.com

🛡️Threat Intelligence (7 platforms)

BlacklistAlienVault OTX
Malware50
Phishing0
Abuse Score0/100

🐛Vulnerabilities Found (3)

MEDIUM缺少 HTTP 安全头
缺少以下安全头: X-XSS-Protection, X-Content-Type-Options, Content-Security-Policy, Permissions-Policy
Fix: 配置 Web 服务器添加这些安全头
LOW服务器信息泄露
响应头泄露服务器信息: Server: cloudflare
Fix: 移除或修改 Server/X-Powered-By 响应头
HIGH敏感路径暴露
发现可访问的敏感路径: /.env, /.git/config
Fix: 限制对这些路径的访问或添加认证

🔌Open Ports (4)

80
http
443
https
8080
unknown
8443
unknown

🌐DNS Records

A: 104.16.160.145
A: 104.17.111.223
AAAA: 2606:4700::6811:6fdf
AAAA: 2606:4700::6810:a091
MX: 1 aspmx.l.google.com.
MX: 5 alt1.aspmx.l.google.com.
MX: 5 alt2.aspmx.l.google.com.
MX: 10 alt3.aspmx.l.google.com.
MX: 10 alt4.aspmx.l.google.com.
NS: vin.ns.cloudflare.com.
NS: gail.ns.cloudflare.com.
TXT: "miro-verification=f1dfeb470361b0d434d09126d0befa76e3f33e79"
TXT: "anthropic-domain-verification-k5t6pn=lsC27lGHqKpiTRFWnvJeLSXRY"
TXT: "google-site-verification=Hq-wazHrRqgmvaPYhMGOQ5Wu9_F7q29KtO2_XZFBnao"
TXT: "google-site-verification=ec5fD3h6tTmwxiZ3eWf33qoWz74gL4QRzWKA_BwGEwQ"
TXT: "google-site-verification=pllKmUS3w9kTdUlvl4BhMMAhQR8NJpRHpE2zU46bUwU"
TXT: "google-site-verification=qitpgMqKs98-OLQzyM4zF8er917Lb9bZOqtTK3zyWm0"
TXT: "google-site-verification=yLfPcFr56Lg5lnFCxjVpl1FV4wCzCyfhLk0i3VBlgJE"
TXT: "v=spf1 include:_spf.google.com include:_spf.salesforce.com include:mktomail.com include:_spf.sendergen.com ~all"
SOA: gail.ns.cloudflare.com. dns.cloudflare.com. 2404236518 10000 2400 604800 1800

📋HTTP Headers

X-Frame-Options: SAMEORIGIN
Strict-Transport-Security: max-age=15552000; includeSubDomains
Referrer-Policy: no-referrer-when-downgrade
Server: cloudflare