fortum.pl security report
Certificate, security headers, email authentication, DNS, registration, and exposed hosts — from public sources.
66risk
Elevated
Several issues worth triaging this week.
1Critical
0High
2Medium
21Low
1Info
Collected 7.8sfrom cache
Domain—
unavailable
- Certificate Transparency268
- DNS resolution17
- Network ownership0
- CDN / WAF detection0
- Exposed ports & CVEs14
- Registration
- DNS posture4
- Email authentication2
- Certificate
- Security headers5
- Archived URLs
- Analysis25
- noteFound 268 hostnames; this runtime allows 50 outbound requests per scan, so the 21 most likely to matter were resolved.
- noteCertificate inspection is unavailable in this runtime.
- noteNetwork ownership lookup is unavailable in this runtime; ASN and org are omitted.
- noteCDN/WAF detection is unavailable in this runtime.
- noteRegistration did not complete (Too many subrequests by single Worker invocation. To configure this limit, refer to https://developers.cloudflare.com/workers/wrangler/configuration/#limits). Results below are partial.
final https://www.fortum.pl/status 200time 1381msstack cloudflare
- –http:// redirects to https://port 80 did not answer
- ✓Strict-Transport-Securitymax-age=31557600; includeSubDomains
- ✓Content-Security-Policyupgrade-insecure-requests; default-src https: data: 'unsafe-inline' 'unsafe-eval'; frame-ancestors 'self' *.wdr.io *.fortum.com *.fortum.se *.fortum.no *.fortum…
- ✓Clickjacking protectionSAMEORIGIN
- ✓X-Content-Type-Optionsnosniff
- ✓Referrer-Policyno-referrer, strict-origin-when-cross-origin
- –Permissions-Policyoptional
- –security.txt publishedoptional — tells researchers where to report bugs
- ✗Cookie countryno Secure · no HttpOnly · no SameSite
- ✓Receives mail via 1 server
- ✓SPFends in -allv=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email include:spf.protection.outlook.com -all
- ✓DMARCp=rejectv=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.email,mailto:dmarc_reporting@fortum.com; ruf=mailto:dmarc_reporting@fortum.com; fo=1
- ✓MTA-STSinbound mail must use TLS
- !DNSSECanswers can be forged
- –CAAany CA may issue
- –IPv6 (AAAA)IPv4 only
- ✓4 nameservers
| Address | Ports | CVEs | Edge | Network |
|---|---|---|---|---|
| 4.245.3.129 | 80443 | 0 | direct | — |
| 199.36.158.100 fortum.pl +3 | 80443 | 0 | direct | — |
| 151.101.2.137 www.fortum.pl +10 | 80443 | 0 | direct | — |
| 151.101.66.137 | 80443 | 0 | direct | — |
| 151.101.130.137 | 80443 | 0 | direct | — |
| 151.101.194.137 | 80443 | 12 | direct | — |
| 4.210.211.41 | 80443 | 0 | direct | — |
| 10.129.190.183 | none known | 0 | direct | — |
| 10.129.190.36 | none known | 0 | direct | — |
fortum.plwww.fortum.pladmin.fortum.pldev.fortum.plstaging.fortum.plaio-test.fortum.plblog.dev.fortum.plqa-online.fortum.plqa.cieplo.fortum.plbeta.media.fortum.plsklep-test.fortum.plzapisy.dev.fortum.pldcs-dev.aws.fortum.plportal-test.fortum.pltest-online.fortum.pltest.cieplo.fortum.plbeta.forkast.fortum.pldcs-test.aws.fortum.plhcdl-dev.aws.fortum.ploptimum.beta.fortum.plwww.blog.dev.fortum.pl
Archived URLs
Endpoints the Wayback Machine has kept — config files, backups, scripts. Slow to fetch, so it is here on request.