← cipherwake.io · All watchlists
Cipherwake watchlist

Domains Still Accepting RSA Fallback (Downgrade-Attackable)

Modern servers prefer ECDHE for forward secrecy, but many still accept RSA key exchange when an attacker manipulates the handshake. These domains are downgrade-attackable: a MITM forces RSA, harvested traffic from that session is decryptable with one stolen cert key. This finding is independent of quantum risk — it's a present-day exposure too.

# Domain Score Grade Sector Freshness
1 github.com 6.6 D verified 1h ago
2 energy.gov 6.4 D verified 16h ago
3 stripe.com 5.8 C verified 1h ago
4 uclahealth.org 5.6 C verified 16h ago
5 apnews.com 5.6 C Global News & Media stale (5d old)
6 usbank.com 5.6 C verified 16h ago
7 epirus.com 5.6 C US Defense Contractors stale (3d old)
8 amazon.com 5.6 C verified 1h ago
9 barclays.co.uk 5.4 C verified 16h ago
10 met.police.uk 5.4 C verified 16h ago
11 monday.com 5.3 C verified 1h ago
12 schwab.com 5.2 C verified 16h ago
13 alaska.com 5.2 C verified 16h ago
14 commerzbank.de 5.2 C verified 16h ago
15 cedars-sinai.org 5.1 C verified 16h ago
16 reuters.com 5.0 C Global News & Media stale (6d old)
17 saic.com 5.0 C verified 16h ago
18 ico.org.uk 5.0 C verified 16h ago
19 gd.com 5.0 C verified 16h ago
20 jpmorgan.com 5.0 C verified 1h ago
21 sendgrid.com 5.0 C verified 16h ago
22 netlify.com 5.0 C verified 1h ago
23 frontier.com 5.0 C verified 16h ago
24 intercom.com 5.0 C verified 1h ago
25 audi.com 5.0 C Global Automakers stale (5d old)

Don't want to be here?

Run the same scan we use for this ranking. See your specific findings, get the migration steps, and track the domain so you know when your score improves.

Updated nightly via Certificate Transparency log mining + active TLS probes. Public-surface measurements only — internal Blast Radius is typically 12–40× this score.
Methodology · Challenge a score · All sector leaderboards

Other watchlists