Security Scan Report: vpn.harvard.edu

Redirected to:
https://login.harvard.edu/app/harvard_huitvpn0gencom_1/exk1xcmipms5YUX...
Site favicon
Submitted: Sep 21, 2026, 8:16:47 AMCompleted: Sep 21, 2026, 8:17:11 AMpubliccompleted

This website contacted 9 IPs in 1 country across 4 domains to perform 23 HTTP transactions. The main domain is login.harvard.edu and was registered 11 years ago.

Submitted URL: https://vpn.harvard.edu

Effective URL:

https://login.harvard.edu/app/harvard_huitvpn0gencom_1/exk1xcmipms5YUX...
Redirected

The Cisco Umbrella rank of the primary domain is #23,419 of the top 1 million websites

AI Security Verdict

Safe Website

Confidence: 95%

0
Risk Score

Legitimate HarvardKey single sign-on page on the official, long-established harvard.edu domain using Okta SSO. No phishing, malware, or credential-harvesting indicators detected.

Safety Factors
Well-established domain (41 years old) with top-100K reputation
Official HarvardKey SAML SSO flow hosted on the genuine harvard.edu domain
No credential/payment harvesting fields present
No threat-intel, YARA, or IDS hits
Domain age information unavailable

Details

Page Title

HarvardKey | Sign In

Scan Type

public

Domain Name Analysis

Within the sponsored educational top-level domain (.edu), 'vpn.harvard.edu' is registered and includes subdomain 'vpn'. The core label 'harvard' covers 7 characters split between 2 vowels and five consonants. Word splitting yields 1 word: harvard. Median word length comes out to 7 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://vpn.harvard.edu

Page Load Overview

6.38s
Total Load Time
1.7 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:413 chars
Detector Agreement:50%

Website Classification

Primary Category

technology software68% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
68%
documentation technical
58%
government public service
48%
education
45%
adult content
33%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
7128.103.200.147Cambridge, Massachusetts, United States
AS1742Harvard University
235.71.190.245Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
23.160.150.114Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
23.160.150.112Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
23.160.150.107Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
23.160.150.26Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
2108.138.7.85Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
252.223.7.86Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
2108.138.7.41Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
239--

Detected Technologies1

40%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E5B3A74F7502B56939038EB6875ABE22C826A257CA74ADD474BFCC70EFED93D7111208

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:HlHXB/yp/9ty4qr39swo+4qr39swoGW4qr39swo6P:HlHXB/yP+QYQzQ6P

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:110877:OoO4IAgHMvAEQ0oGgXwSIhITAtIIAXwIRSAAQA2QE6LAxAp8ygECGAAA0hBGJCAAgMoXABopNVQ+cEkBTmRoCYSQDCP4NESs

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff1c18401800109f
Perceptual Hash:988abfe2b066a39c
Difference Hash:8c31b28ab0ed3636
Wavelet Hash:ff1c185a5c2410ff
Color Hash:#ac7753

Other Hashes

Crop Resistant:8c31b28ab0ed3636

Scan History

Scan history not available

Unable to load historical scan data