Uncover hidden risks! Upgrade for deeper analysis and fortify your site's defenses against potential threats.
For upgrade click here
"DKIM Not Enabled" refers to the absence or misconfiguration of DKIM (DomainKeys Identified Mail) for a domain. DKIM is an email authentication method that allows the sender to digitally sign outgoing emails, providing a means to verify the integrity and authenticity of the messages. When DKIM is not enabled, it means that the domain's email infrastructure is not utilizing DKIM, leaving the domain susceptible to email forgery and potential email-based attacks.
Enable DKIM for Your Domain: Implement DKIM for your domain by generating and publishing DKIM keys. Consult your email service provider or system administrator for specific instructions on configuring DKIM correctly. DKIM keys are cryptographic signatures that are added to outgoing emails to verify their authenticity. Generate and Publish DKIM Records: Generate DKIM keys and publish the corresponding DKIM records in your domain's DNS. The DKIM records contain the public key information that receiving email servers use to validate the DKIM signatures on your outgoing emails. Monitor DKIM Signatures: Regularly monitor the DKIM signatures on your outgoing emails to ensure they are properly added and validated by receiving email servers. Implement mechanisms to track and analyze DKIM signature failures, which may indicate configuration issues or potential tampering attempts. Regularly Review and Update DKIM Configuration: Periodically review your DKIM configuration to ensure it remains accurate and up to date. Update DKIM keys and records as necessary, especially when rotating keys or making changes to your email infrastructure.
Unable to find DKIM record for primus-design.com
DMARC (Domain-based Message Authentication, Reporting, and Conformance) is an email authentication protocol that helps prevent email spoofing and phishing attacks. When DMARC is not enabled, it means that the domain owner has not implemented the necessary DNS records to enforce DMARC policies. This misconfiguration leaves the domain vulnerable to email impersonation and increases the likelihood of successful phishing attacks targeting users associated with the domain.
Enable DMARC: Implement DMARC for your domain by creating and publishing DMARC DNS records. Set DMARC Policies: Define appropriate DMARC policies based on your organization's requirements. DMARC policies include "none," "quarantine," and "reject." Start with a "none" policy to monitor email authentication results without taking any action.
Unable to find DMARC record for primus-design.com
Security headers need to be implemented. Check the "Proofs" section for detailed information on which headers are missing.
Implement the headers.
The security issue of "Exposed Ports" refers to network ports on a system or device that are accessible and visible to external networks or unauthorized entities. Exposed ports can pose significant security risks as they provide potential entry points for attackers to gain unauthorized access, launch attacks, or exploit vulnerabilities in services or applications running on those ports.
Conduct Port Scans and Audits: Regularly perform port scans and audits to identify any open and exposed ports on your systems or devices. Use network scanning tools to identify which ports are open and accessible from external networks. Close Unnecessary Ports: Close or disable any unnecessary ports that are not actively used or required for legitimate business purposes. Limiting the number of open ports reduces the attack surface and minimizes the potential entry points for unauthorized access. Implement Network Firewalls: Utilize network firewalls to control and filter incoming and outgoing traffic. Configure the firewalls to block access to unnecessary ports and only allow traffic through authorized and required ports based on predefined rules and policies.
| address | port | service | protocol |
|---|---|---|---|
| 219.94.128.179 | 25 | smtp | tcp |
| 219.94.128.179 | 22 | ssh | tcp |
| 219.94.128.179 | 21 | ftp? | tcp |
| 219.94.128.179 | 80 | http? | tcp |