76/100 SECURITY SCORE

Certificate Information

Subject
CN=ataques.com
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 03, 2026
Valid Until
September 01, 2026 87 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E6:EC:2F:C1:38:F2:9C:63:3C:EC:20:83:FA:6C:DF:A8:AE:8C:61:48:35:49:7C:AB:B8:1F:2E:1B:A5:23:0D:AA
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
itemsbook.com *.itemsbook.com *.ads.itemsbook.com *.alumni.itemsbook.com *.catalog.itemsbook.com *.en.itemsbook.com *.green.itemsbook.com *.ns.itemsbook.com *.ru.itemsbook.com *.videos.itemsbook.com *.wg.itemsbook.com *.youtube.itemsbook.com

Other domains in certificate

1day.au *.1day.au *.diya.1day.au *.ww25.1day.au
3dmh234.com *.3dmh234.com *.mail.3dmh234.com *.random.3dmh234.com
ajvip.site *.ajvip.site
alligators.com.au *.alligators.com.au
*.agreenhousesus.ataques.com ataques.com *.ataques.com *.de.ataques.com *.m.ataques.com *.random.ataques.com *.sitemaps.ataques.com *.ww25.ataques.com *.ww38.ataques.com *.ww41.ataques.com *.ww5.ataques.com
boxhosting.co.uk *.boxhosting.co.uk *.hostmaster.boxhosting.co.uk *.www.boxhosting.co.uk
btcmobil.com *.btcmobil.com *.mcd.btcmobil.com *.sfmc.btcmobil.com
dpatreon.com *.dpatreon.com *.ww38.dpatreon.com
fa-22.com *.fa-22.com
fakt.co.uk *.fakt.co.uk *.ogloszenia.fakt.co.uk *.random.fakt.co.uk
jiable.tv *.jiable.tv *.jp.jiable.tv *.ww16.jiable.tv *.ww38.jiable.tv
*.hostmaster.karrierbibel.de karrierbibel.de *.karrierbibel.de *.ww38.karrierbibel.de
kotsteine.de *.kotsteine.de
nationalsafetyinc.org *.nationalsafetyinc.org *.ww25.nationalsafetyinc.org
nikola-hahn.com *.nikola-hahn.com *.ww16.nikola-hahn.com
redrawingthelines.org *.redrawingthelines.org *.ruwww.redrawingthelines.org *.ww25.redrawingthelines.org
sarascustomtreats.com *.sarascustomtreats.com
*.cdn.secondhandbitcoinminer.com *.gate.secondhandbitcoinminer.com *.random.secondhandbitcoinminer.com secondhandbitcoinminer.com *.secondhandbitcoinminer.com
srco.cc *.srco.cc
ubisoftsupport.com *.ubisoftsupport.com
underfoot-flooring.co.uk *.underfoot-flooring.co.uk *.ww25.underfoot-flooring.co.uk *.www.underfoot-flooring.co.uk
warmest100.com.au *.warmest100.com.au