Posture summary
Email authentication
SPF ✓ DMARC none DKIM ✓ DNSSEC ✗TLS / certificate
TLS TLSv1.3 65d to expiryInternet exposure
2 open ports 0 KEVBreach metadata
0 public breachesDomain & hosting
36 public hostnames registered 2001 AS8075 · MICROSOFT-CORP-MSN-AS-BLOCK - Microsoft Corporation no blocklist hitsPublic attack surface (36 hostnames in Certificate Transparency)
Hostnames this organization published in public TLS certificates. Passive OSINT — nothing was scanned; a wildcard certificate is in use, so the real footprint may be larger.
The hostname inventory — which forgotten hosts exist and where — is part of the complete audit for this domain.
Recommendations
-
highEnforce DMARC
No enforcing DMARC policy was observed. Publish a DMARC record and move to p=quarantine then p=reject to reduce spoofing.
-
mediumEnable DNSSEC
DNSSEC signing was not detected for this domain.
-
highReset credentials seen in infostealer logs
Public infostealer telemetry associates 2 employee credential set(s) with this domain — passwords captured from infected devices, which bypass password policy and often session-hijack past MFA. Force a reset for the affected services, invalidate active sessions, and check the devices themselves.
-
mediumReview the public subdomain footprint
36 hostnames for this domain appear in public Certificate Transparency logs. Retire forgotten hosts — stale subdomains are a common entry point and a takeover risk.
Refresh this report
Re-run a live analysis or generate a full downloadable audit.
Open live reportAll information is aggregated from public sources for awareness only and does not constitute an accusation or a security assessment. No personal data or credentials are published.