vusec.net

.net crawl

First seen 2026-04-21 · Last seen 2026-05-15 · ok HTTP/1.1 200 3999 ms crawled 2026-05-15

FR · 217.70.184.55 · AS29169 GANDI SAS

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
About VUSec - vusec
Language
en-US
Generator
WordPress 6.9.4
Canonical
https://www.vusec.net/

Open Graph

url
https://www.vusec.net/
title
About VUSec - vusec
locale
en_US
site name
vusec
description
VUSec is the Systems and Network Security Group at Vrije Universiteit Amsterdam and one of the larger groups in the Computer Science department at the VU. Our research covers all aspects of system-level security and reliability, with a focus on memory safety and memory access violations (using software or hardware vulnerabilities). It includes topics such as … Continue reading About VUSec →

Technology

CDN
Amazon CloudFront
Server
CloudFront
CMS
WordPress
Analytics
  • Google Tag Manager

Third-party hosts loaded (4)

  • www.googletagmanager.com×2
  • gmpg.org×1
  • www.feedgrabbr.com×1
  • www.juicer.io×1

Social

Registration

Registrar
Gandi SAS
Created
2016-03-18
Expires
2028-03-18 669 days left
Updated
2025-08-20
Name servers
  • ns-147-c.gandi.net
  • ns-35-a.gandi.net
  • ns-72-b.gandi.net

DNS records live

NS
  • ns-147-c.gandi.net
  • ns-35-a.gandi.net
  • ns-72-b.gandi.net
MX
  • 10 spool.mail.gandi.net
  • 50 fb.mail.gandi.net

Email authentication weak

SPF
v=spf1 include:_mailcust.gandi.net ?all
neutral (?all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

Gandi RSA Domain Validation Secure Server CA 3
from 2025-09-26 to 2026-10-26
Expires in 160 days

HTTP security headers

Header hygiene 70/100 Checked live page: https://www.vusec.net/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
  • cross-origin-opener-policy
  • cross-origin-embedder-policy
  • cross-origin-resource-policy
findings
  • short HSTS max-age
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: https:; style-src 'self' 'unsafe-inline' https:; font-src 'self' data: https:; frame-src 'self' https:; img-src 'self' data: https:; connect-src 'self' https:; frame-ancestors *;
strict-transport-security
max-age=600
cross-origin-opener-policy
same-origin-allow-popups
cross-origin-embedder-policy
unsafe-none
cross-origin-resource-policy
cross-origin

Links to (14)

Linked from (6)