30
中风险
2026-05-21 03:15:41
发现的安全问题
- ⚠️[LOW] 服务器信息泄露
- ⚠️对外暴露了 1 个高风险服务端口
- ⚠️[MEDIUM] 缺少 HTTP 安全头
修复建议
- 💡添加 DMARC 记录增强邮件安全
- 💡配置 Web 服务器添加这些安全头
- 💡移除或修改 Server/X-Powered-By 响应头
- 💡使用防火墙限制对这些端口的访问
🌐域名信息
目标域名gsu.edu
注册域名gsu.edu
顶级域名.edu
🛡️威胁情报 (7 platforms)
Blacklist未列入黑名单
Malware0
Phishing0
Abuse Score0/100
🐛发现的漏洞 (2)
MEDIUM缺少 HTTP 安全头
缺少以下安全头: X-Frame-Options
修复建议: 配置 Web 服务器添加这些安全头
LOW服务器信息泄露
响应头泄露服务器信息: Server: cloudflare
修复建议: 移除或修改 Server/X-Powered-By 响应头
🔌开放端口 (3)
22
ssh
80
http
443
https
🌐DNS 记录
A: 104.239.136.235
MX: 0 gsu-edu.mail.protection.outlook.com.
NS: ns1.usg.edu.
NS: ns2.usg.edu.
NS: ns3.usg.edu.
NS: dns-ext2.gsu.edu.
NS: dns-ext1.gsu.edu.
NS: ns4.usg.edu.
TXT: "sending_domain1063302=78e8cb8b01e2acd81fb8e5f6b1d708d682c9e3f041963dc4197f8c550ae0c4ca"
TXT: "smartsheet-site-validation=hgGKpzO7QaB4nKY76xMjMpykc3WDvVXO"
TXT: "d365mktkey=mqUdtEp5EcWewOjB1eNFtBNx0AKDQxnrpYX2DAwv2MYx"
TXT: "ZOOM_verify_0ceLYS5ZAMdZHYawEPctdg"
TXT: "dell-technologies-domain-verification=gsu.edu_ad9a35e4-563a-4f5d-9038-6b32008d6671_1685757693"
TXT: "airtable-verification=efeaf8833477d2d9879bdd94baeefb2c"
TXT: "facebook-domain-verification=7469k9durhf0gpvqh5f3589pau5cwa"
TXT: "adobe-sign-verification=e7c1b471b1f28f251ec0776519d31f6"
TXT: "sophos-domain-verification=d6c16885c358ba6d3ee6126c402dda4338e9df5ac54bfc7b12abca21ad2cda49"
TXT: "webexdomainverification.4C675B8BA984B136E053AB06FC0A3F65=7c65b3e8-fcaf-43ee-814d-1c52e901b8d9"
TXT: "adobe-idp-site-verification=42a7a470-0872-4bc3-9dca-3bd86be2b827"
TXT: "canva-site-verification=kGZHfH2WfmkP6KayA9DobA"
TXT: "atlassian-domain-verification=VVbSS/Y2WMZfMxihvmT2ZWmpKKl0aL5DWjuhvtJ9iHl6ZRH84TzGqWg32Wza/zdQ"
TXT: "apple-domain-verification=zoLqJCVLKqC7TQMN"
TXT: "extensis-domain-verification=69f52821-6dc8-42ab-bed4-4395d81672d8"
TXT: "v=spf1 ip4:131.96.2.42 ip4:131.96.2.41 include:spfb.gsu.edu a:c.spf.service-now.com include:spf.protection.outlook.com include:_spf.qualtrics.com include:_spf.qp-mail.com -all"
TXT: "ciscocidomainverification=581df163e549b4dd0af62da736f22f71d57c7465f65326947f17fa0d1807fe22"
TXT: "status-page-domain-verification=m3rrrd4cykwp"
TXT: "pardot1063302=a19847b311594f77ef9f1b694eff2c9271894a13c97bfc11d492a0292ae52f7c"
TXT: "amazonses:rCkC5i8vgdVpE+wG8IaPyOv80oDn2yk58U3Pp9pqQMU="
TXT: "amazonses:HB55EuACTyzG7s5+kLC/m1WtLeWL8a1JzmiC+BgQWUQ="
TXT: "airtable-verification=ad852c88ee36576a632db7137ed8fffe"
TXT: "ZOOM_verify_zVdgrBt5eeVm44BLbwitaG"
TXT: "d365mktkey=yvv72jNHFQxWycEXMxgN256ZcfQ8Ta2pZMfxE8H6A7Ex"
SOA: dns-hm1.gsu.edu. root.sphinx.gsu.edu. 797498499 1200 180 2419200 3600
📋HTTP 响应头
X-XSS-Protection: 1; mode=block
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=2592000; includeSubDomains; preload
Content-Security-Policy: frame-ancestors 'self' https://*.ally.ac;
Referrer-Policy: same-origin, strict-origin-when-cross-origin
Permissions-Policy: accelerometer=(),browsing-topics=(),camera=(),clipboard-read=(),clipboard-write=(),geolocation=(),gyroscope=(),hid=(),in
Server: cloudflare