50
高风险
2026-05-21 08:09:16
发现的安全问题
- ⚠️[LOW] 服务器信息泄露
- ⚠️[HIGH] 敏感路径暴露
- ⚠️[MEDIUM] 缺少 HTTP 安全头
修复建议
- 💡添加 DMARC 记录增强邮件安全
- 💡配置 Web 服务器添加这些安全头
- 💡移除或修改 Server/X-Powered-By 响应头
- 💡限制对这些路径的访问或添加认证
🌐域名信息
目标域名kindful.com
注册域名kindful.com
顶级域名.com
🛡️威胁情报 (7 platforms)
Blacklist未列入黑名单
Malware0
Phishing0
Abuse Score19/100
🐛发现的漏洞 (3)
MEDIUM缺少 HTTP 安全头
缺少以下安全头: X-Frame-Options, X-XSS-Protection, X-Content-Type-Options, Strict-Transport-Security, Content-Security-Policy, Referrer-Policy
修复建议: 配置 Web 服务器添加这些安全头
LOW服务器信息泄露
响应头泄露服务器信息: Server: cloudflare, X-Powered-By: WP Engine
修复建议: 移除或修改 Server/X-Powered-By 响应头
HIGH敏感路径暴露
发现可访问的敏感路径: /.git/config, /phpmyadmin
修复建议: 限制对这些路径的访问或添加认证
🔌开放端口 (4)
80
http
443
https
8080
unknown
8443
unknown
🌐DNS 记录
A: 141.193.213.11
A: 141.193.213.10
MX: 10 aspmx3.googlemail.com.
MX: 5 alt1.aspmx.l.google.com.
MX: 1 aspmx.l.google.com.
MX: 10 aspmx2.googlemail.com.
MX: 5 alt2.aspmx.l.google.com.
NS: kanye.ns.cloudflare.com.
NS: dorthy.ns.cloudflare.com.
TXT: "canva-site-verification=aEb2GImOGRLaBzjCNezo2w"
TXT: "atlassian-domain-verification=MjDaKKdF4UaGZJb83nOfatigaOMoRpQvPP2J7nFEFhuqNGFsAggBiA4/2RqPaDK4"
TXT: "MosyleVerificationCode=201772480"
TXT: "apple-domain-verification=CnMb6SKuaDK5ibwk"
TXT: "uber-domain-verification=bffbf8d5-ed5e-4add-b296-60997bbd8e90"
TXT: "ZOOM_verify_bMQXNcXb4JgKxSXGKqhpAe"
TXT: "miro-verification=8e336a536a9db60a4ba496b2b14074264d4383a3"
TXT: "1password-site-verification=SH3OCWX3YZEO5FH5U7YSRCQREI"
TXT: "anthropic-domain-verification-sp4waq=9kibKR4fzgCl1n1Kbn8bvVDg2"
TXT: "docker-verification=ff56df12-51a2-42b3-9b11-f42e9c75dbe6"
TXT: "google-site-verification=5NCNLMpvw7BG9MBEmu2_avSPk6q3HzF9P153mYJLnQU"
TXT: "stripe-verification=80FCDE5703670AB4BA5EA9760435D3DAE9F4B63D886EB68C9FE0CE588EDF12CB"
TXT: "slack-domain-verification=IMjuKD4QBwIQC7YWSPQqlatnJ2TXPGOkpZQM9WKJ"
TXT: "abuseipdb-verification=32tGlpT8"
TXT: "v=spf1 include:mktomail.com include:spf.mandrillapp.com include:mail.zendesk.com include:_spf.google.com include:e2ma.net include:amazonses.com ip4:3.120.181.200/29 ip4:3.222.0.24/29 ip4:198.21.4.52 ip4:167.89.31.27 " "ip4:167.89.127.244 ip4:3.7.25.40/29 ip4:13.127.153.86 ip4:52.66.154.99 ip4:13.127.210.61 ip4:3.25.47.0/29 ~all"
TXT: "adobe-idp-site-verification=1946ee13db698f5e3167dc07664404dfe6458b580938a7982d606fb45b92746f"
TXT: "stripe-verification=3CCCD374E9AE54CC16189E387281C846F6A267CDD6C0B14E605D6DBCB499D993"
TXT: "knowbe4-site-verification=d0c667c2ffceda8f6241b4a3d32e2b64"
TXT: "MS=ms87081014"
TXT: "docusign=d5349a85-e718-41a9-9e33-f395a0e80520"
TXT: "notion-domain-verification=vvD8OhLVGNhHz7iyDmlwIBYMd7GVxxhsN6dQ7UwOThE"
TXT: "stripe-verification=09ee6b053d0190d35f4d540a856aaf573ff761a64c724937155eb50b514e2c5d"
TXT: "google-site-verification=xiolKpxzPS80Tv2lVBCvOhKEtavs5QfyMUlYkLRISIA"
SOA: dorthy.ns.cloudflare.com. dns.cloudflare.com. 2404689676 10000 2400 604800 1800
📋HTTP 响应头
Permissions-Policy: private-state-token-redemption=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https:/
Server: cloudflare
X-Powered-By: WP Engine