← cipherwake.io · All watchlists
Cipherwake watchlist

Domains Still Accepting RSA Fallback (Downgrade-Attackable)

Modern servers prefer ECDHE for forward secrecy, but many still accept RSA key exchange when an attacker manipulates the handshake. These domains are downgrade-attackable: a MITM forces RSA, harvested traffic from that session is decryptable with one stolen cert key. This finding is independent of quantum risk — it's a present-day exposure too.

# Domain Score Grade Sector Freshness
1 energy.gov 6.3 D — verified 17h ago
2 ford.com 5.9 C Global Automakers stale (4d old)
3 cedars-sinai.org 5.9 C — verified 17h ago
4 subaru.com 5.9 C — stale (6d old)
5 stripe.com 5.9 C — verified 3h ago
6 gm.com 5.9 C — stale (6d old)
7 epirus.com 5.8 C — stale (6d old)
8 github.com 5.8 C — verified 3h ago
9 anduril.com 5.4 C — verified 17h ago
10 uclahealth.org 5.4 C — verified 17h ago
11 propublica.org 5.4 C Global News & Media stale (7d old)
12 volkswagen.com 5.4 C — stale (6d old)
13 netlify.com 5.4 C — verified 3h ago
14 ico.org.uk 5.4 C — verified 17h ago
15 honda.com 5.3 C — stale (6d old)
16 monday.com 5.3 C — verified 3h ago
17 gitlab.com 5.2 C — verified 17h ago
18 amazon.com 5.2 C — verified 3h ago
19 alaska.com 5.2 C — verified 17h ago
20 bloomberg.com 5.2 C Global News & Media stale (4d old)
21 met.police.uk 5.2 C — verified 17h ago
22 citi.com 5.1 C — verified 17h ago
23 hyundai.com 5.1 C — stale (6d old)
24 reuters.com 5.0 C Global News & Media stale (4d old)
25 santander.com 5.0 C — verified 17h ago

Don't want to be here?

Run the same scan we use for this ranking. See your specific findings, get the migration steps, and track the domain so you know when your score improves.

Updated nightly via Certificate Transparency log mining + active TLS probes. Public-surface measurements only — internal Blast Radius is typically 12–40× this score.
Methodology · Challenge a score · All sector leaderboards

Other watchlists