HTTP/1.1 200 OK
Date: Thu, 30 Jan 2025 00:26:35 GMT
Server: Apache
Do_not_hack_me: Please
X-Powered-By: Rainbows and XSS<script>alert(1)</script>
Strict-Transport-Security: max-age=63072000
Permissions-Policy: accelerometer=(), ambient-light-sensor=(), autoplay=(), battery=(), camera=(), display-capture=(), document-domain=(), encrypted-media=(), execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=(), geolocation=(), gyroscope=(), layout-animations=(), legacy-image-formats=(), magnetometer=(), microphone=(), midi=(), navigation-override=(), oversized-images=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), sync-xhr=(), usb=(), wake-lock=(), screen-wake-lock=(), web-share=(), xr-spatial-tracking=()
Upgrade: h2,h2c
Connection: Upgrade
Cache-Control: max-age=600
Expires: Thu, 30 Jan 2025 00:36:35 GMT
Vary: Accept-Encoding
X-Content-Type-Options: nosniff
X-XSS: <script>alert('XSS');</script>
X-Frame-Options: DENY
Referrer-Policy: no-referrer-when-downgrade
Expect-CT: enforce,max-age=30,report-uri="https://digininja.report-uri.com/r/d/ct/enforce"
Content-Security-Policy: default-src 'self' ; object-src 'self' ; style-src 'self' https://fonts.googleapis.com/css ; font-src 'self' https://fonts.gstatic.com/s/cookie/v17/; frame-src https://blog.c22.cc https://asciinema.org https://www.youtube.com ; script-src 'self' https://www.googletagmanager.com/gtag/js https://asciinema.org/a/ZbhHf0GnDEp2Vuh6j0EiikJwj.js https://asciinema.org/a/wI21yxJc5xv42qvRa3cSExhgR.js https://www.google-analytics.com ; img-src 'self' https://stats.g.doubleclick.net https://www.google-analytics.com https://www.google.se/ads/ https://www.google.ae/ads/ https://www.google.at/ads/ https://www.google.be/ads/ https://www.google.ca/ads/ https://www.google.ch/ads/ https://www.google.cl/ads/ https://www.google.cn/ads/ https://www.google.co.id/ads/ https://www.google.co.il/ads/ https://www.google.co.in/ads/ https://www.google.co.jp/ads/ https://www.google.co.kr/ads/ https://www.google.co.ma/ads/ https://www.google.co.nz/ads/ https://www.google.co.uk/ads/ https://www.google.co.za/ads/ https://www.google.com.ar/ads/ https://www.google.com.au/ads/ https://www.google.com.br/ads/ https://www.google.com.co/ads/ https://www.google.com.gr/ads/ https://www.google.com.gt/ads/ https://www.google.com.hk/ads/ https://www.google.com.mm/ads/ https://www.google.com.mx/ads/ https://www.google.com.np/ads/ https://www.google.com.ph/ads/ https://www.google.com.pk/ads/ https://www.google.com.pt/ads/ https://www.google.com.sg/ads/ https://www.google.com.tr/ads/ https://www.google.com.tw/ads/ https://www.google.com.zw/ads/ https://www.google.com/ads/ https://www.google.cz/ads/ https://www.google.de/ads/ https://www.google.dk/ads/ https://www.google.ee/ads/ https://www.google.es/ads/ https://www.google.fr/ads/ https://www.google.iq/ads/ https://www.google.it/ads/ https://www.google.no/ads/ https://www.google.pl/ads/ https://www.google.ro/ads/ https://www.google.rs/ads/ https://www.google.ru/ads/ https://www.google.co.tz/ads/ https://www.google.co.th/ads/ https://www.google.com.eg/ads/ https://www.google.com.ng/ads/ https://www.google.fi/ads/ https://www.google.sk/ads/ https://www.google.com.pe/ads https://www.google.com.vn/ads https://www.google.lk/ads https://www.google.co.zw/ads https://www.google.nl/ads https://www.google.com.bh/ads https://www.gstatic.com/images/branding/product/2x/translate_24dp.png ; connect-src https://stats.g.doubleclick.net https://www.google-analytics.com/ ; report-uri https://digininja.report-uri.com/r/d/csp/enforce;
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
04:9f:32:33:8b:0a:ac:e3:d5:b5:dc:00:53:fa:96:0c:08:08
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=Let's Encrypt, CN=R11
Validity
Not Before: Jan 26 15:29:55 2025 GMT
Not After : Apr 26 15:29:54 2025 GMT
Subject: CN=alertlab.digi.ninja
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:bd:2b:7a:37:d1:2b:18:6c:b0:90:2b:62:01:59:
34:bf:3a:c8:e7:3b:28:9a:a7:0a:3e:bf:de:92:bb:
41:72:03:c9:0f:61:fa:a7:c1:b9:8d:4c:8d:d4:62:
d2:7a:23:f8:5e:b2:b1:6c:d5:96:1d:b7:80:18:a1:
d1:70:5c:0b:98:42:7c:ba:be:ae:5b:a1:52:85:4d:
1c:45:f4:41:c8:b1:c7:e6:49:32:6d:cb:7d:bd:c4:
b9:8c:a2:68:71:eb:14:e8:a9:a1:1e:88:84:ef:47:
79:b2:8f:e0:cb:a3:25:ec:bb:eb:4f:5b:40:17:fd:
77:d3:95:c7:4d:11:f0:6d:f3:b7:8b:77:e6:05:de:
11:1f:3b:7f:89:a4:64:a4:63:01:6e:6b:c7:e4:5c:
32:f7:b4:81:21:c2:6e:10:4e:b7:17:bd:61:4a:9c:
59:22:96:a0:cf:28:17:a1:82:93:53:5e:30:9f:a6:
bc:96:b3:62:9b:09:85:57:24:8d:f8:c2:d0:60:19:
2a:ad:86:e0:9d:52:ee:f6:7b:cd:40:0c:58:d3:d7:
23:ff:68:6b:aa:30:dd:ef:8b:65:f7:25:e3:66:02:
de:eb:55:c3:bc:a8:11:43:74:8f:22:cc:c5:4b:28:
b2:0d:1b:f4:59:a4:ec:7c:18:85:ad:9b:6d:3c:89:
2d:69
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
48:19:AA:3C:11:D0:C5:03:13:CE:D2:60:B4:9E:D8:D6:DB:07:00:EC
X509v3 Authority Key Identifier:
C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
Authority Information Access:
OCSP - URI:http://r11.o.lencr.org
CA Issuers - URI:http://r11.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:alertlab.digi.ninja, DNS:authlab.digi.ninja, DNS:cors-client.digi.ninja, DNS:cors-server.digi.ninja, DNS:crackedflask.digi.ninja, DNS:digi.ninja, DNS:digininja.org, DNS:frontme.vuln-demo.com, DNS:frontmecf.vuln-demo.com, DNS:graphqlab.digi.ninja, DNS:html5.digi.ninja, DNS:html5server.digi.ninja, DNS:iot-cert.space, DNS:ip.digi.ninja, DNS:secret.digi.ninja, DNS:splitxsslab.digi.ninja, DNS:svg.digi.ninja, DNS:vuln-demo.com, DNS:vulndap.digi.ninja, DNS:ws.digi.ninja, DNS:www.digi.ninja, DNS:www.digininja.org, DNS:www.iot-cert.space, DNS:www.vuln-demo.com, DNS:www.zonetransfer.me, DNS:zonetransfer.me
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
Timestamp : Jan 26 16:28:26.250 2025 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:DF:C5:AC:37:E4:F0:5D:A6:1F:FD:0E:
98:A8:BB:D3:D0:C9:E5:AA:D3:55:7F:6D:05:AC:C8:50:
C7:AA:9C:89:C3:02:21:00:9D:F8:A6:D8:DC:86:87:DE:
99:C6:5B:0F:55:E9:88:E1:6D:41:84:16:74:4D:8C:34:
FB:49:2F:E7:BE:AB:E1:FC
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9:
1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08
Timestamp : Jan 26 16:28:26.266 2025 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:D5:A0:95:D0:8D:20:8F:A6:08:C7:FB:
33:A5:8C:C8:55:4F:F9:FF:72:62:89:19:D6:5B:42:DB:
B6:3B:D4:A2:5E:02:20:2D:B3:55:8C:1B:DF:E0:65:B4:
DB:3C:B5:19:F2:76:5D:EC:2F:5E:71:0D:2E:70:16:60:
DD:E3:AC:3E:B2:2A:44
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
53:70:7d:44:1a:39:c2:9e:c5:3a:4c:b4:f5:fc:2c:8c:0f:8d:
6a:a9:e3:f9:5a:b9:87:5b:ee:f3:c5:69:b8:ba:14:7d:75:fd:
ac:98:a2:05:43:c3:ea:f7:39:1f:95:25:3f:3b:7a:90:16:3f:
f7:e2:4d:da:4c:38:3b:61:df:02:39:4e:c5:14:c1:8e:de:2f:
f3:8d:6e:2f:06:ff:60:4f:14:fb:74:ef:ea:2d:1c:51:c0:78:
e4:62:33:8a:67:99:d0:a7:9b:95:5d:2f:a3:57:e3:5e:91:9d:
93:f1:e1:8e:f9:7e:d5:fd:e5:96:07:80:e1:32:85:9b:4e:99:
2f:60:79:e8:98:01:ac:07:38:27:20:f7:77:43:1b:d2:0a:e1:
ce:9f:5d:b2:9d:30:32:72:22:83:4e:5a:b5:be:22:4a:bb:eb:
f9:4f:f5:91:8a:a3:de:ab:b9:68:cc:e6:44:2e:28:ff:3d:7c:
d5:61:51:aa:45:36:df:27:af:e6:40:10:6b:a2:ea:a8:0d:e9:
92:3e:25:fd:db:b1:06:b8:f5:eb:a8:2b:3f:5c:c5:4d:78:c7:
1a:76:b6:6a:6f:ac:46:fb:1b:99:28:8b:c1:9e:c1:b8:b1:18:
22:90:42:e2:52:83:ed:01:fb:fb:ed:0b:79:85:71:ae:3d:a0:
ab:4c:f0:29