hogum
dts.net.nz

dts.net.nz security report

Certificate, security headers, email authentication, DNS, registration, and exposed hosts — from public sources.

85risk

Critical

Exposed services or known CVEs need attention now.

1Critical
2High
5Medium
5Low
2Info
Collected 11.3sfrom cache
  1. Certificate Transparency34
  2. DNS resolution10
  3. Network ownership0
  4. CDN / WAF detection0
  5. Exposed ports & CVEs33
  6. Registration
  7. DNS posture3
  8. Email authentication1
  9. Certificate
  10. Security headers2
  11. Archived URLs
  12. Analysis15
  • noteFound 34 hostnames; this runtime allows 50 outbound requests per scan, so the 21 most likely to matter were resolved.
  • noteCertificate inspection is unavailable in this runtime.
  • noteNetwork ownership lookup is unavailable in this runtime; ASN and org are omitted.
  • noteCDN/WAF detection is unavailable in this runtime.
  • noteNo registration data: RDAP has no record at this level.
final https://dts.net.nz/status 523time 4833msstack cloudflare
  • http:// redirects to https://
  • Strict-Transport-Security
  • Content-Security-Policy
  • Clickjacking protection
    SAMEORIGIN
  • X-Content-Type-Options
  • Referrer-Policy
    same-origin
  • Permissions-Policyoptional
  • security.txt publishedoptional — tells researchers where to report bugs
  • Receives mail via 1 server
  • !SPFends in ~all
    v=spf1 mx ip4:202.20.0.0/21 ip4:202.68.80.0/20 ip4:202.174.176.0/20 ip6:2402:9e00::/32 ~all
  • DMARC
    no record
  • !MTA-STSinbound mail can be downgraded to plaintext
AddressPortsCVEsEdgeNetwork
202.68.93.38
215380110143443465587+3
0direct
202.20.5.21
215380110143443587993+2
0direct
202.68.93.47
80110443465587993995
0direct
202.20.5.180
80443
0direct
202.68.92.78
80443
372direct
202.68.93.40
53
0direct
202.68.93.10none known0direct
Archived URLs

Endpoints the Wayback Machine has kept — config files, backups, scripts. Slow to fetch, so it is here on request.