Executive Summary

Attack Surface Mapping & Passive Reconnaissance Toolkit • Domain: sagarbiswas-multihat.github.io • Date: March 20, 2026 at 05:52 UTC • Version: 1.0.0

24
/ 100

LOW EXPOSURE

  • SSL Issues: 0/20
  • Missing Headers: 14/20
  • DNS Issues: 5/15
  • Admin Exposure: 0/15

Scope & Methodology

Assessment method: passive, non-destructive reconnaissance only. No brute force, payload injection, or exploitation techniques were used.

Subdomains

NameStatusIPCDN

DNS Analysis

Records

TypeValues
A185.199.110.153, 185.199.108.153, 185.199.111.153, 185.199.109.153
AAAA2606:50c0:8002::153, 2606:50c0:8001::153, 2606:50c0:8000::153, 2606:50c0:8003::153
MX
NS
TXT
CNAME

Flags

SSL/TLS

Issuer: CN=R12,O=Let's Encrypt,C=US

Expiry: 2026-05-07T21:41:52+00:00 (48 days)

TLS Version: TLSv1.3

Wildcard: Yes

Risk Flags

Technology Stack

GitHub.com Django Fastly

Security Headers

HeaderValue
access-control-allow-origin*
strict-transport-securitymax-age=31556952

Findings

Attack Surface Map

Internal links: 32 | External links: 70

Forms: 0 | Scripts: 2

API-like routes: None detected

Admin paths: None detected

Wayback Findings

Historical URLRisk

Risk Summary

IDCategoryRiskFindingImpact
HDR-001 Security Headers HIGH Content-Security-Policy header is missing 8
HDR-004 Security Headers MEDIUM X-Frame-Options header is missing 5
HDR-005 Security Headers HIGH CORS policy allows wildcard origin (*) 8
HDR-103 Security Headers LOW x-content-type-options header is missing 2
HDR-104 Security Headers LOW referrer-policy header is missing 2
HDR-105 Security Headers LOW permissions-policy header is missing 2
HDR-106 Security Headers LOW x-xss-protection header is missing 2
DNS-SPF-001 DNS MEDIUM SPF record missing or malformed. 5
DNS-DMARC-001 DNS MEDIUM DMARC record missing or invalid. 5
DNS-DKIM-001 DNS LOW No DKIM hints discovered in queried TXT records. 2

Recommendations

  1. HDR-001 — Implement a strict CSP policy tailored to required assets.
  2. HDR-004 — Set X-Frame-Options to DENY or SAMEORIGIN.
  3. HDR-005 — Restrict CORS origins to trusted domains.
  4. HDR-103 — Set a secure default for x-content-type-options.
  5. HDR-104 — Set a secure default for referrer-policy.
  6. HDR-105 — Set a secure default for permissions-policy.
  7. HDR-106 — Set a secure default for x-xss-protection.
  8. DNS-SPF-001 — Publish a valid SPF record to reduce spoofing risks.
  9. DNS-DMARC-001 — Configure DMARC with monitoring and enforcement policy.
  10. DNS-DKIM-001 — Ensure DKIM selectors are configured for active mail domains.

Appendix

Raw Subdomains: 0

Raw DNS A Records: 185.199.110.153, 185.199.108.153, 185.199.111.153, 185.199.109.153

Historical Subdomains:

Non-Security Headers

HeaderValue
connectionkeep-alive
content-length17260
serverGitHub.com
content-typetext/html; charset=utf-8
last-modifiedFri, 20 Mar 2026 01:17:44 GMT
etagW/"69bca038-14e3a"
expiresFri, 20 Mar 2026 04:41:22 GMT
cache-controlmax-age=600
content-encodinggzip
x-proxy-cacheMISS
x-github-request-id71C6:119B58:35A56B:3AD9FF:69BCCD99
accept-rangesbytes
dateFri, 20 Mar 2026 05:52:46 GMT
via1.1 varnish
age1
x-served-bycache-sin-wsss1830049-SIN
x-cacheHIT
x-cache-hits1
x-timerS1773985966.364171,VS0,VE2
varyAccept-Encoding
x-fastly-request-id6a8aae96dbf653c6fec1368a213a08770e21dcf7