www.kbsec.com.vn
Công ty Cổ phần Chứng khoán KB Việt Nam (KBSV)
Công ty Cổ phần Chứng khoán KB Việt Nam (KBSV)
Industry
- Finance / Investing
Origin
- Vietnam
Global rank
- #506,478
Rank in Vietnam
- #8,934
en
Công ty Cổ phần Chứng khoán KB Việt Nam (KBSV)
Công ty Cổ phần Chứng khoán KB Việt Nam (KBSV)
The score and grade reflect the result recorded at scan time. Review each check and its evidence for the full context.
This report summarizes the security observations recorded for www.kbsec.com.vn at scan time. Review each check and its evidence for the full context.
At assessment time, CyStack did not find www.kbsec.com.vn or related infrastructure on any scam, phishing, or malware warning list after checking 5 online reputation sources. This result reflects external observations; it does not guarantee absolute safety or verify the organization’s legal status or reputation.
Check whether the website uses a secure connection and whether its HTTPS certificate remains valid.
Data sources
CyStack compiles scan results from its internal cybersecurity monitoring systems, including CyStack VulnScan and CyStack Threat Intelligence, together with publicly available Internet data. The assessment only observes and analyzes information already available; it does not attempt unauthorized access, test passwords, send exploit code, or change or disrupt the assessed system.
CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the enterprise.
These 3 failed checks or warnings have the greatest impact on the result for www.kbsec.com.vn.
Why it matters
The Secure attribute prevents a browser from sending a cookie over unencrypted HTTP. Without it, session or authentication data may be exposed to someone observing the network.
What to do
Set Secure on every session, authentication, and other sensitive cookie served by the HTTPS application.
Evidence and check scope
Why it matters
Content Security Policy (CSP) limits where scripts, styles, frames, and other browser content may come from. A strong policy reduces the impact if an attacker manages to inject content into a page.
What to do
Define only the sources the application needs, test the policy before activating it, and avoid broad wildcard (*) rules, unsafe-inline, and unsafe-eval where possible.
Why it matters
TLS 1.0 and TLS 1.1 use outdated security designs and are no longer accepted by modern standards. Leaving them enabled allows older, weaker connection methods.
What to do
Disable TLS 1.0 and TLS 1.1, support TLS 1.2 securely, and enable TLS 1.3 where possible.
Evidence and check scope
Identify website protection and check whether public IPs appear on warning lists.
| Hosting or network provider | DroneBL | Mailspike | PSBL | SpamCop | blocklist.de | Spamhaus |
|---|---|---|---|---|---|---|
| 103.148.158.23 | Not listed | Not listed | Not listed | Not listed | Not listed | Unavailable |
Check domain and email settings that help prevent brand impersonation.
Evidence and check scope
References
References
Recently completed assessments, prioritizing websites with a similar sector, country or security grade for easier comparison.