Domain Information
WordPress Version: 6.4.10 VULNERABLE
Theme: twentynineteen 1.4· 100% conf. (theme used by 11,037 domains)
Last Checked: 2026-09-10 04:52:38
HTTPS: Yes
Server: nginx
Response time (TTFB): 624 ms
Hosting: InMotion Hosting, Inc. (AS54641)
IP address: 199.250.194.xxx
Plugins (1)
| Plugin | Version | Used By |
|---|---|---|
| modal-window | 5.3.8· 85% conf. | 2,885 |
Security Headers
6 missing headers
Missing headers:
- Strict-Transport-Security (HSTS) — Forces HTTPS connections ?
- Content-Security-Policy (CSP) — Prevents XSS attacks ?
- X-Content-Type-Options — Prevents MIME sniffing ?
- X-Frame-Options — Prevents clickjacking ?
- Referrer-Policy — Controls referrer information ?
- Permissions-Policy — Limits browser features ?
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.4.10) — outdated core with known vulnerabilities. Update to the latest release immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.
Other WordPress domains on this IP (21)
These WordPress domains are served from the same IP (199.250.194.xxx) — usually shared hosting or the same operator. Domains are obfuscated uniformly.
- a*n*b*l*u*h*r*.com
- a*t*y*a*e*.com
- d*t*f*e*d.com
- d*t*f*e*d*n*.com
- d*v*d*e*k*o.com
- d*f*b*l*s.com
- e*r*s*.com
- e*w*r*e*m*t*.com
- f*s*i*n*r*n*e.com
- h*g*e*p*r*u*t*.com
- k*r*n*s*.com
- k*d*-*.com
- k*d*u.com
- k*m*l*n*y*u*a*k*r*v*l.com
- m*n*r*h*o*s*n*.org
- o*d*o*o*y*k*c*u*.com
- o*t*o*a*i*y*r*j*c*.com
- r*l*-*a*i*a*.com
- r*l*c*p*t*l.com
- s*e*t*u*i*t*r*o*s*d*s*g*s.com
- t*l*a*a*m*b*l*.com