Scan target yourdomain.com.au
2:40.2s
Powered by New scan
Overall Risk Score
F
36/100
4 critical 2 high
3 medium 1 low
TLS Grade
A+
TLS 1.2/1.3 · Google Trust Services
Attack Surface
0Subdomains
2Live hosts
7Tech
Email Posture
C
DMARC monitor-only (p=none)

Top priorities

5 high-severity items

1 critical
Exposed /config.php
HTTP 200 at https://yourdomain.com.au/config.php
2 critical
Exposed /backup.sql
HTTP 200 at https://yourdomain.com.au/backup.sql
3 critical
Exposed /backup.zip
HTTP 200 at https://yourdomain.com.au/backup.zip
4 critical
Exposed /.aws/credentials
HTTP 200 at https://yourdomain.com.au/.aws/credentials
5 high
Exposed /server-status
HTTP 200 at https://yourdomain.com.au/server-status

OWASP Top 10 (2021)

Passive-scan applicable categories

A01Broken Access Control1 finding
A02Cryptographic Failuresno findings
A03Injectionrequires active testing
A04Insecure Designno findings
A05Security Misconfiguration4 findings
A06Vulnerable & Outdated Componentsno findings
A07Identification & Auth Failures1 finding
A08Software & Data Integrity Failuresno findings
A09Security Logging & Monitoringrequires active testing
A10Server-Side Request Forgeryno findings

Technology stack

2 techs detected

Cloudflare
version unknown
G
Generator
Hugo 0.134.2

Known vulnerabilities

Cross-referenced against retire.js and EOL data

No known-vulnerable components detected. This is a passive scan. Authenticated and active testing adds substantially more coverage.

Active vulnerability scan

Active scan engine unavailable

Active scan unavailable.Active vulnerability scan engine is not currently available for the scanner tier. Contact support if this persists.

Web server audit

Web server audit engine unavailable

Web server scan unavailable.The web server audit engine is not currently available on the scanner. Contact support if this persists.

WordPress audit

Target is not a WordPress site, scan skipped

Not a WordPress site.No WordPress markers (wp-content, /wp-json, generator meta) detected in the HTML. WordPress audit was skipped.

HTTP security headers

✓ present · ✗ missing

HostHSTSCSPX-FrameContent-TypeReferrerPermsCOOP
yourdomain.com.au

TLS & certificates

1 endpoint

yourdomain.com.au A+
Issuer
Google Trust Services
Protocol
TLSv1.3
Expires
14 Sep 2026, 04:20 GMT
Status
Valid

TLS deep audit

1 endpoint probed · 8 findings

low
QUIC on yourdomain.com.au:443
Not tested due to lack of local OpenSSL support · section: protocols
low
QUIC on yourdomain.com.au:443
Not tested due to lack of local OpenSSL support · section: protocols
low
QUIC on yourdomain.com.au:443
Not tested due to lack of local OpenSSL support · section: protocols
low
QUIC on yourdomain.com.au:443
Not tested due to lack of local OpenSSL support · section: protocols
high
LUCKY13 on yourdomain.com.au:443
Potentially vulnerable, uses TLS CBC ciphers · section: vulnerabilities
CVE-2013-0169
high
LUCKY13 on yourdomain.com.au:443
Potentially vulnerable, uses TLS CBC ciphers · section: vulnerabilities
CVE-2013-0169
high
LUCKY13 on yourdomain.com.au:443
Potentially vulnerable, uses TLS CBC ciphers · section: vulnerabilities
CVE-2013-0169
high
LUCKY13 on yourdomain.com.au:443
Potentially vulnerable, uses TLS CBC ciphers · section: vulnerabilities
CVE-2013-0169

Email security

DMARC monitor-only (p=none)

Compliance snapshot

ISO 27001 · PCI-DSS · NIST CSF 2.0 · CIS Controls v8

ISO 27001:20223 pass · 1 warn · 3 fail
PCI-DSS 4.02 pass · 3 warn · 1 fail
NIST CSF 2.03 pass · 3 warn · 0 fail
CIS Controls v82 pass · 1 warn · 4 fail
ISO 27001 A.8.24 - Use of cryptographyFail
ISO 27001 A.5.1 - Policies for information securityPass
PCI-DSS 4.0 Req 6.4 - Public-facing web app protectionWarn
NIST CSF PR.DS-1 - Data-at-rest protectionWarn
CIS Control 4 - Secure configuration of assetsFail

DNS records

A · AAAA · MX · NS · TXT · SOA · CAA

A
172.66.40.147
172.66.43.109
AAAA
2606:4700:3108::ac42:29f2
2606:4700:3109::ac42:2b6d
MX
1 aspmx.l.google.com
5 alt1.aspmx.l.google.com
5 alt2.aspmx.l.google.com
10 alt3.aspmx.l.google.com
10 alt4.aspmx.l.google.com
NS
vin.ns.cloudflare.com
carolyn.ns.cloudflare.com
SOA
vin.ns.cloudflare.com. dns.cloudflare.com. 2408149052 10000 2400 604800 1800
CAA
No CAA record - without one, any CA can issue certificates for this domain.

Subdomains (CT logs)

0 unique

No subdomains discoveredin certificate transparency logs.

Open ports

Port discovery unavailable

Port scan unavailable.The port discovery engine is not currently available on the scanner. Contact support if this persists.

Subdomain takeover check

Fingerprinted against known vulnerable services

0Vulnerable
0Suspect
2Safe
0Unresolved

No subdomains discovered - apex and www checked directly, takeover check otherwise skipped.

OSINT & external exposure

Wayback Machine · search-engine dorks

Wayback Machine
97 snapshots
  • 1. http://yourdomain.com.au/
  • 2. https://yourdomain.com.au/about
  • 3. https://yourdomain.com.au/services
  • 4. https://yourdomain.com.au/blog
  • 5. https://yourdomain.com.au/contact
  • 6. https://yourdomain.com.au/sitemap.xml
OSINT dork queries
🔵 Google
Indexed PDFs5 queries
Exposed logs, .env, backup files6 queries
Admin & login portals4 queries
Open directory listings3 queries
Password / credential leaks2 queries
⚪ DuckDuckGo
Indexed PDFsOpen ↗
Exposed .env filesOpen ↗
Open directory listingsOpen ↗
⚫ GitHub
Domain in "password"4 records
Domain in "api_key"Open ↗
Private RSA key referencing domainOpen ↗
Private AWS secretOpen ↗
🟣 Censys
Hosts referencing this domain1 pin
🟢 LeakIX
Public breaches referencing domain1 record

All findings

Consolidated log across all checks · 97 total

SevCategoryFindingDetail
ExposureExposed /config.phpHTTP 200 at yourdomain.com.au/config.php
ExposureExposed /backup.sqlHTTP 200 at yourdomain.com.au/backup.sql
ExposureExposed /backup.zipHTTP 200 at yourdomain.com.au/backup.zip
ExposureExposed /.aws/credentialsHTTP 200 at yourdomain.com.au/.aws/credentials
ExposureExposed /server-statusHTTP 200 at yourdomain.com.au/server-status
ExposureExposed /docker-compose.ymlHTTP 200 at yourdomain.com.au/docker-compose.yml
HeadersMissing X-Frame-OptionsSecurity header X-Frame-Options is absent
EmailDMARC policy is "none"DMARC monitor-only, p=none
ExposureExposed /adminHTTP 200 at yourdomain.com.au/admin
DNSNo CAA recordAny CA can issue certs for this domain
HeadersMissing Permissions-PolicySecurity header Permissions-Policy is not set
HeadersMissing COOPSecurity header COOP is not set
Reconcrt.sh lookup foundHTTPS/ConnectionPoolError (crt.sh, port:443)
Active ScanPort discovery skippedEngine unavailable, not currently available for this scanner
Web Server ScanWeb server audit skippedEngine unavailable, not currently available for this scanner
Active Vulnerability ScanActive scan skippedEngine unavailable, not currently available for this scanner

Ready for the picture attackers can't see from outside?

Authenticated web & API testing, internal review, remediation-ready report aligned to your compliance frameworks.

Book a scoping call