ximalaya.com
HTML metadata
Technology
- Server
- CW
Third-party hosts loaded (4)
- s1.xmcdn.com×12
- imagev2.xmcdn.com×3
- award.xmcdn.com×1
- fdfs.xmcdn.com×1
Contact
Registration
- Registrar
- Xin Net Technology Corporation
- Created
- 1999-01-31
- Expires
- 2027-01-31 257 days left
- Updated
- 2021-12-09
- Name servers
-
- ns3.dnsv5.com
- ns4.dnsv5.com
DNS records live
- NS
-
- ns3.dnsv5.com
- ns4.dnsv5.com
- MX
-
- 10 mxw.mxhichina.com
- 5 mxn.mxhichina.com
- CNAME
-
- waf.c.ximalaya.com
- TXT
-
Show 5 TXT records
_globalsign-domain-verification=0Sh1uhyp4pYdFarECIxIk97AlWFnTIKLVpVicFHudB_globalsign-domain-verification=FMEhLijk10aIvt8Wc1TZDh9k35amDKvQZubHgeKKSMkzh8qxrcbjmhb6pwd2djrh35r5n9ndlhxmyxv5l9rp3mp32qw860xjbvrtl86965ckfcq5A9IZqvn2wgfRbCpsQW9OWFnAePe49g0wsDuMs=
Email authentication weak
- SPF
-
v=spf1 include:spf.mxhichina.com -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
GlobalSign RSA OV SSL CA 2018
Expires in 277 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src * blob:; img-src * data: blob: resource: *.xmcdn.com *.ximalaya.com; connect-src * wss: blob: resource:; frame-src 'self' *.ximalaya.com pos.baidu.com dup.baidustatic.com openapi.baidu.com wappass.baidu.com passport.baidu.com s.union.360.cn 360fenxi.mediav.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: *.xmcdn.com *.ximalaya.co hm.baidu.com s.union.360.cn cpro.baidustatic.com pos.baidu.com dup.baidustatic.com zz.bdstatic.com b.bdstatic.com jspassport.ssl.qhimg.com webcert.cnmstl.net *.geetest.com *.geevisit.com *.gsensebot.com ipv6.shuzilm.cn hdaa.shuzilm.cn; style-src 'self' 'unsafe-inline' *.xmcdn.com *.ximalaya.com *.geetest.com *.geevisit.com *.gsensebot.com resource:; frame-ancestors *.ximalaya.com;
Links to (5)
Linked from (50)
- xibojiaoyu.com×10
- chinapp.com×4
- elecfans.com×4
- phb123.com×4
- docin.com×4
- kulayu.com×3
- qidianla.com×3
- pm265.com×3
- nuoin.com×3
- jia.com×3
- albertaz.com×3
- tmtpost.com×3
- chunqiuss.com×3
- hqwx.com×3
- xuexila.com×3
- crnews.net×2
- regenmedicalcentre.com×2
- 10y01.com×2
- asiafruitchina.net×2
- kukfm.com×2
- jiazhumeiguo.com×2
- 512020.xyz×2
- xusuna.com×2
- runker.net×2
- 899778.com×2
- jnmiaoyin.com×2
- sbsemergence.com×2
- ptz123.com×2
- 73738.com×2
- 51tool.com×2
- hiapk.com×2
- catjc.com×2
- edu24ol.com×2
- sdmiaoyin.com×2
- it200.com×2
- cnspub.com×2
- gaosan.com×2
- 02516.com×2
- maguaw.com×2
- 63243.com×2
- utovr.com×2
- ailongmiao.com×2
- aicangku.com×2
- 1234wu.com×2
- deepdh.com×2
- sandreensbridal.com×1
- 23456v.com×1
- 12345b.com×1
- solidot.org×1
- littlehuss.com×1