20
低风险
2026-05-21 04:59:27
发现的安全问题
- ⚠️[MEDIUM] 缺少 HTTP 安全头
修复建议
- 💡添加 DMARC 记录增强邮件安全
- 💡配置 Web 服务器添加这些安全头
🌐域名信息
目标域名dickssportinggoods.com
注册域名dickssportinggoods.com
顶级域名.com
🛡️威胁情报 (7 platforms)
Blacklist未列入黑名单
Malware0
Phishing0
Abuse Score0/100
🐛发现的漏洞 (1)
MEDIUM缺少 HTTP 安全头
缺少以下安全头: X-XSS-Protection, Referrer-Policy, Permissions-Policy
修复建议: 配置 Web 服务器添加这些安全头
🔌开放端口 (2)
80
http
443
https
🌐DNS 记录
A: 67.88.8.34
MX: 10 mxa-00228b01.gslb.pphosted.com.
MX: 10 mxb-00228b01.gslb.pphosted.com.
NS: dns1.cscdns.net.
NS: dns2.cscdns.net.
TXT: "4vdbsbzglnm2gs1wqhqxhn96kychr09r"
TXT: "_laqvw30lsdm48ivxhdsqcs2swp4c1dp"
TXT: "amazonses:xtyuowGyuMAtk/q2gnrQqGObkXN7JsxiSR+CnpFlpAE="
TXT: "v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ~all"
TXT: "facebook-domain-verification=i86q6ksuz4hmfhv48gxn67xula2orl"
TXT: "google-site-verification=7e7MlUv0WFq0hA_zQK31SAFxfOP9P05g5uYqvq-OgfM"
TXT: "google-site-verification=QAYVaTCaGxyenTho_lp6s6LvQ2pM69-TJ9FkkYGX8TE"
TXT: "google-site-verification=_RKHXnBB4YCcjtKME3HGp3cVUndO9pgELvYGTVrmHf4"
SOA: dns1.cscdns.net. hostmaster.cscdns.net. 2013111022 28800 7200 1209600 14400
📋HTTP 响应头
X-Frame-Options: SAMEORIGIN, SAMEORIGIN
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=86400 ; includeSubDomains ; preload
Content-Security-Policy: script-src 'self' data: 'unsafe-inline' 'unsafe-eval' documentservices.adobe.com *.dickssportinggoods.com *.cardinalcomm