Error
buddha.spa-center.co.in
A comprehensive security and network analysis report for buddha.spa-center.co.in. Server: BunnyCDN-LA1-912. Hosted in GB.
- Primary Port
- 443
- Scan Time
- Shareable Report Link
- https://sechttp.com/scan/buddha.spa-center.co.in
Detailed Security Analysis
Attack Path & DDoS Defense Analysis
Attacker
AS60068 (BunnyCDN-LA1-912 POP)
Your Server
Defense Summary
While BunnyCDN-LA1-912 provides robust protection against Layer 4 (network-level) attacks, your server remains potentially vulnerable to sophisticated Layer 7 (application-level) attacks that can bypass standard CDN defenses. Additional WAF rules and application-side security measures are recommended.
Layer 4 Defense
BunnyCDN-LA1-912 provides robust SYN flood, UDP amplification, and volumetric attack protection at the network edge.
Layer 7 Vulnerabilities
Application-layer attacks targeting 0 exposed API endpoints require additional WAF rules and rate limiting.
Server Information Disclosure
LOWINFO-001
Description
The server is disclosing its software type: BunnyCDN-LA1-912. This can help attackers identify potential vulnerabilities.
Recommendation
Configure your web server to hide or modify the Server header to prevent information disclosure.
Missing or Invalid HSTS Header
MEDIUMSEC-001
Description
The Strict-Transport-Security header is not properly configured, leaving the site vulnerable to man-in-the-middle attacks.
Recommendation
Implement HSTS by adding the Strict-Transport-Security header with a proper max-age value to force HTTPS connections.
Missing X-Frame-Options Header
MEDIUMSEC-002
Description
The site is not protected against clickjacking attacks.
Recommendation
Add the X-Frame-Options header with value 'DENY' or 'SAMEORIGIN' to prevent clickjacking.
Currently Testing
No fuzzing data available for this scan.
Port Scan Results
Port | Service | Status | Version |
---|---|---|---|
80 | HTTP | CLOSED | - |
443 | HTTPS | OPEN | TLS 1.3 |
22 | SSH | FILTERED | - |
3306 | MySQL | CLOSED | - |
HTTP Headers Analysis
ASN Information
Upstream Providers (48)
Downstream Customers (276)
Internet Exchange Points (64)
Currently Testing
JavaScript analysis is in progress.
Historical Scan Records (1)
Error