The SSL FREAK vulnerability detection tool is an online domain security detection service focused on identifying whether target websites are affected by the “Factoring Attack on RSA-EXPORT Keys (FREAK)” vulnerability. The FREAK vulnerability (CVE-2015-0204) is a serious flaw in the SSL/TLS protocol that allows attackers to downgrade connections through a Man-in-the-Middle (MITM) attack, forcing the use of weak export-grade RSA keys, thereby intercepting and decrypting sensitive data.
This tool scans the SSL/TLS configuration of specified domains to quickly determine if this vulnerability exists, providing users with clear security assessment results and helping website administrators promptly discover and fix potential security risks.
baidu.com.Input Parameters:
example.com. Please ensure the correct domain format is entered.Output Result Format:
Detection results will be presented in a list format, with each row representing a detected service or vulnerability detail, including the following fields:
CVE-2015-0204 will be displayed.Example Input Data:
Domain: baidu.com
Expected Output Results (Table Format):
| Domain/IP | Port | Security | CVE | CWE | Description |
|---|---|---|---|---|---|
| baidu.com | 443 | OK | N/A | N/A | No SSL FREAK vulnerability found or it has been fixed. |
Specific Operation Demonstration:
baidu.com in the “Domain” input box.baidu.com is not affected by the SSL FREAK vulnerability.example.com. IP addresses or URL paths are not supported.No comments yet
Be the first to leave a comment!
2024.09-07
【更新】重制工具UI
2022.11-11