- Nikto v2.6.0 --------------------------------------------------------------------------- + Target IP: 172.67.69.105 + Target Hostname: salacyber.com + Target Port: 80 + Platform: Unknown + Start Time: 2026-07-20 05:25:17 (GMT-4) --------------------------------------------------------------------------- + Server: cloudflare + Multiple IPs found: 172.67.69.105, 104.26.9.42, 104.26.8.42, 2606:4700:20::ac43:4569, 2606:4700:20::681a:92a, 2606:4700:20::681a:82a + [999106] /: Cloudflare detected via cf-ray header. Recommend proxying via Burp or mitmproxy to avoid TLS fingerprint blocks. See: https://github.com/sullo/nikto/wiki/Using-a-Proxy + [999100] /webcgi/: Uncommon header(s) 'reporting-endpoints' found, with contents: cf-csp-endpoint="https://csp-reporting.cloudflare.com/cdn-cgi/script_monitor/report?m=5MnD08QXcfuEiXiPqT9nFxhuzP0vRVQw9dHDzIT1CtU-1784539517.1562397-1.0.1.1-_BuranEoyZc3z3ID_YkIAiBLf1sCNZpnMHjSpnd92x3yWZOgk6JZ7OXJLC2eh_i4x226emU_n.ELQibPQ3nxpXA_HZZUMGi3HdAHYjIYTj.PJcE6OH2tJ_cEOMpKaEugRoLFBrV63X5nY7q8XFazf0c9u.wEi8GMuUGCWOWRaRU". + [011799] /webcgi/: An alt-svc header was found which is advertising HTTP/2 over TLS. The endpoint is: ':443'. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/alt-svc + No CGI Directories found (use '-C all' to force check all possible dirs). CGI tests skipped. + [013587] /: Suggested security header missing: content-security-policy. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/CSP + [013587] /: Suggested security header missing: x-content-type-options. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/X-Content-Type-Options + [013587] /: Suggested security header missing: referrer-policy. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Referrer-Policy + [013587] /: Suggested security header missing: strict-transport-security. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Strict-Transport-Security + [013587] /: Suggested security header missing: permissions-policy. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Permissions-Policy + [800264] /: cloudflare - Cloudflare detected via banner. Recommend proxying via Burp or mitmproxy to avoid TLS fingerprint blocks if not already proxying. + Scan terminated: 2 errors and 9 items reported on the remote host + End Time: 2026-07-20 05:26:46 (GMT-4) (89 seconds) --------------------------------------------------------------------------- + 1 host(s) tested