- Nikto --------------------------------------------------------------------------- + Multiple IPs found: 54.237.226.164, 3.230.129.93, 52.3.144.142, 2600:1f18:631e:2f85:93a9:f7b0:d18:89a7, 2600:1f18:631e:2f83:49ee:beaa:2dfd:ae8f, 2600:1f18:631e:2f84:4f7a:4092:e2e9:c617 + Target IP: 54.237.226.164 + Target Hostname: netflix.com + Target Port: 443 --------------------------------------------------------------------------- + SSL Info: Subject: /C=US/ST=California/L=Los Gatos/O=Netflix, Inc./CN=www.netflix.com Altnames: account.netflix.com, ca.netflix.com, netflix.ca, netflix.com, signup.netflix.com, www.netflix.ca, www1.netflix.com, www2.netflix.com, www3.netflix.com, develop-stage.netflix.com, release-stage.netflix.com, www.netflix.com, tv.netflix.com, embed.develop-stage.netflix.com, embed.release-stage.netflix.com Ciphers: TLS_AES_256_GCM_SHA384 Issuer: /C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert Secure Site ECC CA-1 + Start Time: 2024-07-24 19:31:41 (GMT-4) --------------------------------------------------------------------------- + Server: envoy + /: Cookie nfvdid created without the secure flag. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Cookies + /: Cookie nfvdid created without the httponly flag. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Cookies + /: Retrieved via header: 1.1 i-0146247828ae35777 (us-east-1). + /: Uncommon header 'x-envoy-upstream-service-time' found, with contents: 8. + /: Uncommon header 'x-envoy-decorator-operation' found, with contents: lo_svc. + /: Uncommon header 'x-originating-url' found, with contents: http://netflix.com/. + /: Uncommon header 'x-netflix.proxy.execution-time' found, with contents: 74. + /: Uncommon header 'edge-control' found, with contents: no-cache, no-store. + /: Uncommon header 'x-b3-traceid' found, with contents: 66a18edd9a8338d33190ad4190508718. + /: Uncommon header 'x-request-id' found, with contents: 75490dcb-3c32-45a9-97d3-d85a5f13d8ae. + /: Uncommon header 'x-netflix.nfstatus' found, with contents: 1_1. + Root page / redirects to: https://www.netflix.com/ + No CGI Directories found (use '-C all' to force check all possible dirs) + /clientaccesspolicy.xml contains 16 lines which should be manually viewed for improper domains or wildcards. See: https://www.acunetix.com/vulnerabilities/web/insecure-clientaccesspolicy-xml-file/ + /crossdomain.xml contains 1 line which include the following domains: *.netflix.com . See: http://jeremiahgrossman.blogspot.com/2008/05/crossdomainxml-invites-cross-site.html + /dump.tar: Uncommon header 'x-netflix.execution-time' found, with contents: 1. + /dump.tar: Uncommon header 'x-netflix.request.toplevel.uuid' found, with contents: c2b6530c-dc68-4e26-b5a2-b7aa13b88db4-702084. + Scan terminated: 17 error(s) and 15 item(s) reported on remote host + End Time: 2024-07-24 19:32:33 (GMT-4) (52 seconds) --------------------------------------------------------------------------- + 1 host(s) tested