mygirls.adidas.de

Last updated on August 7, 2021
Security Insights
3 Medium 3 Low
40
Medium
Missing HTTP Strict Transport Security Policy

The HTTP Strict Transport Security header informs the browser that it should never load a site using HTTP and should automatically convert all attempts to access the site using HTTP to HTTPS requests instead. This will be enforced by the browser even if the user requests an HTTP resource on the same server. This prevents an opportunity for a man-in-the-middle attack.


Medium
TLS 1.0 Weak Protocol

The web server supports the deprecated TLS 1.0 protocol which can lead to weaknesses.


Medium
TLS 1.1 Weak Protocol

The web server supports the deprecated TLS 1.1 protocol which can lead to weaknesses.


Low
Missing Content Security Policy

Content Security Policy (CSP) is a web security standard that helps to mitigate attacks like cross-site scripting (XSS), clickjacking or mixed content issues. CSP provides mechanisms to websites to restrict content that browsers will be allowed to load.


Low
Missing X-Content-Type-Options Header

The 'X-Content-Type-Options' HTTP response header prevents the browser from MIME-sniffing a response away from the declared content-type.


Low
Missing X-Frame-Options Header

The 'X-Frame-Options' HTTP response header can be used to indicate whether or not a browser should be allowed to render a page inside a frame or iframe. Sites can use this to avoid clickjacking attacks, by ensuring that their content is not embedded into other sites.


DNS
IP addresses:
Reverse DNS:
a23-10-137-164.deploy.static.akamaitechnologies.com.
Hosting Provider
Name: Akamai Technologies Inc.
ASN: 16625
Location:
Manhattan, New York, United States
Map View
Services
Port Protocol Application
80 HTTP AkamaiGHost
443 HTTPS AkamaiGHost
Cookies
Name Value Domain Secure HttpOnly
adidas_country mygirls.adidas.de
HTTP Response Headers
Connection: Close
Content-Type: text/html
Mime-Version: 1.0
Server: AkamaiGHost
Set-Cookie: adidas_country=DE; path=/
Certificate
Common Name (CN):
mygirls.adidas.com
Subject Alternative Names (SAN):
mygirls.adidas.at
mygirls.adidas.be
mygirls.adidas.ca
mygirls.adidas.ch
mygirls.adidas.co
mygirls.adidas.co.id
mygirls.adidas.co.in
mygirls.adidas.co.kr
mygirls.adidas.co.nz
mygirls.adidas.co.th
mygirls.adidas.co.uk
mygirls.adidas.co.za
mygirls.adidas.com
mygirls.adidas.com.ar
mygirls.adidas.com.au
mygirls.adidas.com.br
mygirls.adidas.com.hk
mygirls.adidas.com.my
mygirls.adidas.com.ph
mygirls.adidas.com.sg
mygirls.adidas.com.tr
mygirls.adidas.com.tw
mygirls.adidas.com.vn
mygirls.adidas.cz
mygirls.adidas.de
mygirls.adidas.dk
mygirls.adidas.es
mygirls.adidas.fi
mygirls.adidas.fr
mygirls.adidas.gr
mygirls.adidas.hu
mygirls.adidas.ie
mygirls.adidas.it
mygirls.adidas.nl
mygirls.adidas.no
mygirls.adidas.pl
mygirls.adidas.pt
mygirls.adidas.se
mygirls.adidas.sk
test.adidasarchive.org
www.adidasarchive.org
Valid From:
March 18, 2021
Valid To:
November 20, 2021
Issuer:
GeoTrust RSA CA 2018
Serial Number:
789f7b7a645fbc86da50ea10140141f
TLS Configuration
Supported Protocols:
TLS 1.0
TLS 1.1
TLS 1.2
TLS 1.3
Supported Ciphers:
TLS 1.0
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
TLS_RSA_WITH_AES_128_CBC_SHA
TLS_RSA_WITH_AES_256_CBC_SHA
TLS 1.1
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
TLS_RSA_WITH_AES_128_CBC_SHA
TLS_RSA_WITH_AES_256_CBC_SHA
TLS 1.2
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256
TLS_RSA_WITH_AES_128_CBC_SHA
TLS_RSA_WITH_AES_128_CBC_SHA256
TLS_RSA_WITH_AES_128_GCM_SHA256
TLS_RSA_WITH_AES_256_CBC_SHA
TLS_RSA_WITH_AES_256_CBC_SHA256
TLS_RSA_WITH_AES_256_GCM_SHA384
TLS 1.3
TLS_AES_128_CCM_8_SHA256
TLS_AES_128_CCM_SHA256
TLS_AES_128_GCM_SHA256
TLS_AES_256_GCM_SHA384
TLS_CHACHA20_POLY1305_SHA256