中文

Website Security Scanner

Comprehensive security check · Vulnerability scan · Threat intel · SSL analysis

latribune.fr
Scan Time: 2026-05-21 03:41:07
Re-scan
25
Low Risk
2026-05-21 03:41:07

Security Issues Found

  • ⚠️[LOW] 服务器信息泄露
  • ⚠️[MEDIUM] 缺少 HTTP 安全头

Recommendations

  • 💡添加 DMARC 记录增强邮件安全
  • 💡配置 Web 服务器添加这些安全头
  • 💡移除或修改 Server/X-Powered-By 响应头

🌐Domain Info

Targetlatribune.fr
Registeredlatribune.fr
TLD.fr

🛡️Threat Intelligence (7 platforms)

BlacklistNot Blacklisted
Malware0
Phishing0
Abuse Score0/100

🐛Vulnerabilities Found (2)

MEDIUM缺少 HTTP 安全头
缺少以下安全头: X-XSS-Protection, Content-Security-Policy
Fix: 配置 Web 服务器添加这些安全头
LOW服务器信息泄露
响应头泄露服务器信息: Server: cloudflare, X-Powered-By: Next.js
Fix: 移除或修改 Server/X-Powered-By 响应头

🔌Open Ports (4)

80
http
443
https
8080
unknown
8443
unknown

🌐DNS Records

A: 104.18.0.132
A: 104.18.1.132
AAAA: 2606:4700::6812:184
AAAA: 2606:4700::6812:84
MX: 10 aspmx.l.google.com.
MX: 20 alt1.aspmx.l.google.com.
MX: 20 alt2.aspmx.l.google.com.
MX: 30 aspmx2.googlemail.com.
MX: 30 aspmx3.googlemail.com.
NS: clayton.ns.cloudflare.com.
NS: desi.ns.cloudflare.com.
TXT: "MS=BA9E61B4B0D4924397C5C430CD7C7B3E693A4F2B"
TXT: "_globalsign-domain-verification=iKvwvG3ZwCEeeHyUMOHsCnZ9YLUvoso4L-_LDkliwY"
TXT: "druide-validation-domaine=a0af3bc3112accfd81c2f2a92758c980"
TXT: "facebook-domain-verification=1acnl5vf2t5zb7cdzpozk0myj62kfm"
TXT: "google-site-verification=AROkQjmR9c06XQjDs6vCriBtGKkAJX7kZliJs_BGpgY"
TXT: "google-site-verification=Rg6FfwVprfS4r8OKlELaK2zVRdskfw59sJjf0u8C-nw"
TXT: "google-site-verification=RlF7Voj5n6pVAs62SD5t6Mnb-4ZVHzU1cJpwZZvHcoA"
TXT: "google-site-verification=eoIeJFXBm4GbvpbG_Y91PLngb8kjbpYv8yRg6gVr5wg"
TXT: "google-site-verification=r8WASB-_gap-aXVttpOnJf_dxgNS4QU3mdIqBJxQVoA"
TXT: "v=spf1 a mx ip4:31.15.30.45 ip4:31.15.30.13 include:amazonses.com include:spf.mailjet.com include:_spf.google.com include:mail.zendesk.com -all"
SOA: clayton.ns.cloudflare.com. dns.cloudflare.com. 2404769170 10000 2400 604800 1800

📋HTTP Headers

X-Frame-Options: DENY
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
Referrer-Policy: origin-when-cross-origin
Permissions-Policy: camera=(), geolocation=(), microphone=()
Server: cloudflare
X-Powered-By: Next.js