25
Low Risk
2026-05-21 07:07:08
Security Issues Found
- ⚠️[LOW] 服务器信息泄露
- ⚠️[MEDIUM] 缺少 HTTP 安全头
Recommendations
- 💡添加 DMARC 记录增强邮件安全
- 💡配置 Web 服务器添加这些安全头
- 💡移除或修改 Server/X-Powered-By 响应头
🌐Domain Info
Targetncl.ac.uk
Registeredncl.ac.uk
TLD.ac.uk
🛡️Threat Intelligence (7 platforms)
BlacklistNot Blacklisted
Malware0
Phishing0
Abuse Score0/100
🐛Vulnerabilities Found (2)
MEDIUM缺少 HTTP 安全头
缺少以下安全头: X-Frame-Options, X-XSS-Protection, Content-Security-Policy, Permissions-Policy
Fix: 配置 Web 服务器添加这些安全头
LOW服务器信息泄露
响应头泄露服务器信息: Server: Apache
Fix: 移除或修改 Server/X-Powered-By 响应头
🔌Open Ports (2)
80
http
443
https
🌐DNS Records
A: 128.240.216.85
MX: 10 ncl-ac-uk.mail.protection.outlook.com.
NS: ns0.ncl.ac.uk.
NS: ns1.ncl.ac.uk.
NS: ns4.ja.net.
TXT: "v=spf1 include:_spf2.ncl.ac.uk include:spf.protection.outlook.com include:wpm.flywire.com include:spf.mandrillapp.com include:5025575.spf07.hubspotemail.net " " include:servers.mcsv.net include:tcmailservice.targetconnect.net include:_spf.explore-blue.com include:spf-eu.exlibrisgroup.com -all"
TXT: "apple-domain-verification=UaNzjQEIQRhckqte"
TXT: "teamviewer-sso-verification=67fae83811dc400ba2d3cc6045d503ec"
TXT: "WTY5Q4IGWN1MXRIWPSSOF8RT0JGE3SFRJZOUMQ1XX"
TXT: "google-gws-recovery-domain-verification=55665660"
TXT: "successfactors-site-verification=MTQ3ZTE2NDFlNDgzYjY0MjRjOTMyNjJmNWRmMGFlOTI5ZTNjOTE2YWVmMGQ2YzE2ZjIzOGI2YzY0ODAyMmQzYw=="
TXT: "QuoVadis=c5bf27cc-0cbb-48ad-bba6-46145e736efd"
TXT: "google-site-verification=SasCIF4KzXtD3nqV9mDXXiHQ-0-3ournQWjovc1uqMo"
TXT: "MS=ms63109581"
TXT: "google-site-verification=5330qP8xqR_LroHgedzb0fveQmqTNW-m-IZFiYUeibk"
TXT: "tiktok-developers-site-verification=1nppZIpL5exZU48egAXoci0m6kVRnvAP"
TXT: "adobe-idp-site-verification=bde1f88bfe8ef00a273774afaa224776a8d6938c5a08627f278dd799898c901e"
TXT: "l5XEzR45RP0mWKFhKEuXQz+mTFxj89fmw3I3iYd6JOr2ySmKV27d+U3M+ZYXar6xqHsS4wViN3wT34efSOiW6A=="
TXT: "QuoVadis=f835bf38-050b-4877-8f63-a435f833498d"
SOA: ns0.ncl.ac.uk. hostmaster.ncl.ac.uk. 2025100306 10800 3600 2419200 900
📋HTTP Headers
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000
Referrer-Policy: strict-origin-when-cross-origin
Server: Apache