65
高风险
2026-05-21 03:36:41
发现的安全问题
- ⚠️[LOW] 服务器信息泄露
- ⚠️[HIGH] 敏感路径暴露
- ⚠️对外暴露了 3 个高风险服务端口
- ⚠️[MEDIUM] 缺少 HTTP 安全头
修复建议
- 💡限制对这些路径的访问或添加认证
- 💡移除或修改 Server/X-Powered-By 响应头
- 💡添加 DMARC 记录增强邮件安全
- 💡配置 Web 服务器添加这些安全头
- 💡使用防火墙限制对这些端口的访问
🌐域名信息
目标域名sudouest.fr
注册域名sudouest.fr
顶级域名.fr
🛡️威胁情报 (7 platforms)
Blacklist未列入黑名单
Malware0
Phishing0
Abuse Score0/100
🐛发现的漏洞 (3)
MEDIUM缺少 HTTP 安全头
缺少以下安全头: X-Frame-Options, X-XSS-Protection, X-Content-Type-Options, Strict-Transport-Security, Content-Security-Policy, Referrer-Policy, Permissions-Policy
修复建议: 配置 Web 服务器添加这些安全头
LOW服务器信息泄露
响应头泄露服务器信息: Server: nginx
修复建议: 移除或修改 Server/X-Powered-By 响应头
HIGH敏感路径暴露
发现可访问的敏感路径: /.env, /.git/config, /wp-admin
修复建议: 限制对这些路径的访问或添加认证
🔌开放端口 (7)
21
ftp
80
http
443
https
3306
unknown
3389
unknown
8080
unknown
8443
unknown
🌐DNS 记录
A: 45.223.122.231
A: 45.223.97.231
MX: 1 aspmx.l.google.com.
MX: 5 alt1.aspmx.l.google.com.
MX: 5 alt2.aspmx.l.google.com.
MX: 10 alt3.aspmx.l.google.com.
MX: 10 alt4.aspmx.l.google.com.
NS: ns41.infomaniak.com.
NS: ns42.infomaniak.com.
TXT: "5b6821603070c86fa061ea56ab413c8b"
TXT: "dropbox-domain-verification=x14t4cfj1lv"
TXT: "Sendinblue-code:a781f718508f64c37185c6e65a8b181f"
TXT: "google-site-verification=XM4DZwWHUiu9mWTm7DcCxY_U-75QZiylC8iT6fcvcE8"
TXT: "google-site-verification=cxHGhuPYE06DtJpAFUdUI3k5mPVf8HRZFyxnOI8hHJs"
TXT: "google-site-verification=ltAQ1nTxZZT5XTA6Prsse__5Lw_CNh-pqqrOQt4qhKI"
TXT: "google-site-verification=vLWFQU4Im5n8yQwd8OKzjF5E4-izXPzZVIJ21etOS3Q"
TXT: "sending_domain433602=65df2110cf747c32e16a218bd6ea948e0f14bdf47409db4e71a0437a00c4025b"
TXT: "v=spf1 include:spf.mailjet.com ip4:217.109.128.30 ip4:90.83.132.0/26 ip4:62.210.175.180 include:_" "spf.google.com include:spf.sendinblue.com include:aspmx.pardot.com include:145610216.spf03.hubspotem" "ail.net ip4:13.32.145.41 ip4:13.32.145.19 ip4:13.32.145.64 ip4:13.32.145.106 ip4:142.132.153.59 ip4:" "142.132.153.61 ip6:2002:88f3:8568::88f3:8568 ~all"
SOA: ns41.infomaniak.com. hostmaster.infomaniak.ch. 2026050853 10800 3600 605800 3600
📋HTTP 响应头
Server: nginx