25
低风险
2026-05-21 07:17:59
发现的安全问题
- ⚠️[LOW] 服务器信息泄露
- ⚠️[MEDIUM] 缺少 HTTP 安全头
修复建议
- 💡添加 DMARC 记录增强邮件安全
- 💡配置 Web 服务器添加这些安全头
- 💡移除或修改 Server/X-Powered-By 响应头
🌐域名信息
目标域名circle.so
注册域名circle.so
顶级域名.so
🛡️威胁情报 (7 platforms)
Blacklist未列入黑名单
Malware0
Phishing0
Abuse Score0/100
🐛发现的漏洞 (2)
MEDIUM缺少 HTTP 安全头
缺少以下安全头: X-XSS-Protection, Content-Security-Policy
修复建议: 配置 Web 服务器添加这些安全头
LOW服务器信息泄露
响应头泄露服务器信息: Server: cloudflare
修复建议: 移除或修改 Server/X-Powered-By 响应头
🔌开放端口 (4)
80
http
443
https
8080
unknown
8443
unknown
🌐DNS 记录
A: 172.64.148.115
A: 104.18.39.141
AAAA: 2a06:98c1:3106::6812:278d
AAAA: 2606:4700:4404::ac40:9473
MX: 1 aspmx.l.google.com.
MX: 10 alt3.aspmx.l.google.com.
MX: 10 alt4.aspmx.l.google.com.
MX: 15 5b6vhttjgzjo6qhcfz3sogfdmyojuvxgulgf4tjfswlukdc4kstq.mx-verification.google.com.
MX: 5 alt1.aspmx.l.google.com.
MX: 5 alt2.aspmx.l.google.com.
NS: james.ns.cloudflare.com.
NS: tori.ns.cloudflare.com.
TXT: "ZOOM_verify_YTb0wmeKkNTO0WhRrgiVoX"
TXT: "anthropic-domain-verification-gxm909=hOTKGqe0UWR5Ch5sclcE3vEqd"
TXT: "facebook-domain-verification=cne9cb840ahirvw9sivwoi6ouxox8o"
TXT: "google-site-verification=RNsvs9yZv_RuIXGe_d7SggoyHBUrmcIhRGj3wQDr_mQ"
TXT: "google-site-verification=XLIkMDEi6a_15SFMvh5M7fJDveLdNZ-wvQLyCJnRmkQ"
TXT: "google-site-verification=k7gn4PdfPCtYLh9yIzfQoJ_TSPyOik9q9akd5sZKZrY"
TXT: "google-site-verification=yTYEDCc_ZL8EelrLKZl8BKDnQq14hypW2Dv70fBRI0s"
TXT: "pinterest-site-verification=cf3f0cf4f6d3eba4fe197f61f6f47e03"
TXT: "postman-domain-verification=681b81d6b32d8f665b6ae8731574dd9700e037499827a270315033a91c9a7692dd99b02f26a99068bc59388964e821b5fe7c570dc32c900043c29f5735669e21"
TXT: "v=spf1 mx include:_spf.google.com include:sendgrid.net include:mail.zendesk.com include:9306053.spf04.hubspotemail.net include:spf.autopilothq.com ~all"
TXT: "yahoo-verification-key=RIV8QG4Z58lpZ94kaMWxIBJDZa4XMGWm/DFwNLn24SA="
SOA: james.ns.cloudflare.com. dns.cloudflare.com. 2404720937 10000 2400 604800 1800
📋HTTP 响应头
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
Referrer-Policy: same-origin
Permissions-Policy: accelerometer=(),browsing-topics=(),camera=(),clipboard-read=(),clipboard-write=(),geolocation=(),gyroscope=(),hid=(),in
Server: cloudflare