Legal Disclaimer:

This platform is for authorized security research and educational purposes ONLY. Scanning assets without explicit permission is illegal.

Internet-Facing Assets Mapping

reconshield.in Subdomains & External Footprint

Passive infrastructure intelligence and host audit report for reconshield.in. Access active subdomains, DNS records, TLS health, and attack surface risk evaluations.

Attack Surface Score

28/100
Medium Exposure

Tracked Subdomains

114hosts
Aggregated from CT Logs & DNS

Primary Cloud/Host

Cloudflare

takeovers: None Detected

Active Subdomain Mapping Table

Resolved subdomains discovered via passive certificate log parsing. These subdomains route directly to the core assets of reconshield.in.

HostnameResolved IP AddressHTTP StatusAsset ClassificationNetwork Operator
www.reconshield.in192.0.2.28200 OKProductionCloudflare
api.reconshield.in192.0.2.29200 OKREST APICloudflare
dev.reconshield.in192.0.2.30403 ForbiddenDevelopmentCloudflare
mail.reconshield.in192.0.2.31200 OKMail GatewayCloudflare

Authoritative DNS Zone Profile

DNS record configurations retrieved for the parent domain and primary sub-environments.

// Address (A) Records
reconshield.inIN A192.0.2.28
www.reconshield.inIN A192.0.2.28
// Mail Exchange (MX) Records
reconshield.inIN MX 10mail.reconshield.in
// Text (TXT) Metadata Records
reconshield.inIN TXTv=spf1 ip4:192.0.2.0/24 -all
// Nameserver (NS) Authorities
reconshield.inIN NSns1.reconshield.in
reconshield.inIN NSns2.reconshield.in

Cryptographic SSL/TLS Audit

Validates certificate authorities, cipher suites, expiration timeframes, and security configurations.

Certificate Authority (Issuer)Cloudflare Inc ECC CA-3
Active Cipher SuiteTLS_AES_128_GCM_SHA256
Key Size & TypeECDSA 256 bits
TLS Protocol Version SupportTLS 1.2, TLS 1.3
Validity Period2026-01-15 to 2027-01-15
Web SSL Security GradeA+

Key Security Observations

Diagnostic analysis of public configurations, mail security rules, and DNS hijack protection for reconshield.in.

  • DNSSEC Validation: DNSSEC signatures not detected. Vulnerable to cache-poisoning redirection.
  • DMARC Compliance: DMARC policy configured: Reject. Helps prevent spoofing attacks.
  • Sender Policy Framework (SPF): Valid policy. Authorized mail servers explicitly listed.
  • CNAME Takeover Vulnerabilities: No dangling CNAME records pointing to decommissioned hosts detected.

Audit Subdomain Vulnerabilities in Real Time

Run a real-time deep scan on the ReconShield live engine to query latest Certificate Transparency registries, active HTTP ports, and service headers for reconshield.in.

Scan reconshield.in Now

Domain Analysis Context

This page showcases a security snapshot of the external footprint of reconshield.in using passive OSINT datasets and DNS telemetry caches.

  • - No active packets are sent to reconshield.in.
  • - SSL records verify PKI updates.
  • - Staging nodes map staging subdomains.