hogum
bayer.us

bayer.us security report

Certificate, security headers, email authentication, DNS, registration, and exposed hosts — from public sources.

86risk

Critical

Exposed services or known CVEs need attention now.

1Critical
2High
6Medium
17Low
1Info
Collected 25.3sfrom cache
  1. Certificate Transparency147
  2. DNS resolution14
  3. Network ownership0
  4. CDN / WAF detection0
  5. Exposed ports & CVEs21
  6. Registration
  7. DNS posture2
  8. Email authentication0
  9. Certificate
  10. Security headers0
  11. Archived URLs
  12. Analysis27
  • noteFound 147 hostnames; this runtime allows 50 outbound requests per scan, so the 21 most likely to matter were resolved.
  • noteCertificate inspection is unavailable in this runtime.
  • noteNetwork ownership lookup is unavailable in this runtime; ASN and org are omitted.
  • noteCDN/WAF detection is unavailable in this runtime.
  • noteNo registration data: RDAP has no record at this level.
  • note1 host was identified as CDN/edge infrastructure from ASN ownership rather than a cdncheck fingerprint.
final https://www.bayer.com/en/us/bayer-united-states-of-americastatus 403time 2152msstack cloudflare
  • http:// redirects to https://port 80 did not answer
  • Strict-Transport-Security
  • Content-Security-Policy
  • Clickjacking protection
  • X-Content-Type-Options
  • Referrer-Policy
  • Permissions-Policyoptional
  • security.txt publishedoptional — tells researchers where to report bugs
  • No MX records — domain does not receive mail
  • SPF
    no record
  • DMARC
    no record
  • MTA-STSn/a
Archived URLs

Endpoints the Wayback Machine has kept — config files, backups, scripts. Slow to fetch, so it is here on request.