What Is MakeMyTrip.com?
MakeMyTrip (makemytrip.com) is an Indian-based flight booking website. As of March 2023, the site makemytrip.com gets an estimated 41.7 million monthly views according to SimilarWeb. The Wayback Machine estimates that makemytrip.com was founded on October 17, 2000. The Internet Archive has saved the domain makemytrip.com 9,269 times between October 17, 2000, and April 19, 2023. The domain makemytrip.com has been saved by the Internet Archive consistently ever since it started as a website back in the year 2000; however, it received a boost in 2004 and another one in 2014. Since 2014, it has been saved extremely consistently.
Links and Profiles
Website: https://www.makemytrip.com/
Is MakeMyTrip.com Safe?
I ran malware tests to find out if makemytrip.com is safe and legit. Here are the results:
I checked the site makemytrip.com on the online malware scanner Sucuri and it returned as a medium security risk. You can see the same here: Sucuri scan for the site makemytrip.com.
Sucuri says the site makemytrip.com is a medium security risk because the HTTPS version of the website is not accessible; it returns a 403 Forbidden warning. That said, Sucuri says it was able to scan the domain makemytrip.com and that it is malware-free. Sucuri also says that the site makemytrip.com is not blacklisted.
Some hardening improvements can be made:
- Missing security header for
ClickJacking Protection
. Alternatively, you can useContent-Security-Policy: frame-ancestors 'none'
. Affected pages:
https://www.makemytrip.com:443/
https://www.makemytrip.com:443/ for Google’s UA
https://www.makemytrip.com:443/404javascript.js/
https://www.makemytrip.com:443/404testpage4525d2fdc/ - Missing security header to prevent
Content Type
sniffing. Affected pages:
https://www.makemytrip.com:443/
https://www.makemytrip.com:443/ for Google’s UA
https://www.makemytrip.com:443/404javascript.js/
https://www.makemytrip.com:443/404testpage4525d2fdc/ - Missing
Strict-Transport-Security
security header. Affected pages:
https://www.makemytrip.com:443/
https://www.makemytrip.com:443/ for Google’s UA
https://www.makemytrip.com:443/404javascript.js/
https://www.makemytrip.com:443/404testpage4525d2fdc/ - Missing
Content-Security-Policy
directive. We recommend to add the following CSP directives (you can usedefault-src
if all values are the same):script-src
,object-src
,base-uri
,frame-src
- Default server banners displayed. Your site is displaying your web server default banners.
However, these hardening improvements don’t impact the Sucuri grade.
To check this further I ran a parasite scan with Unmask Parasites on the site makemytrip.com and it says the page is clean. You can see the same here: Unmask Parasites scan for the site makemytrip.com.
To try to confirm that the site is clean, I checked the domain makemytrip.com on VirusTotal and no security vendor has flagged the domain as malicious. You can see the same here: VirusTotal scan for the site makemytrip.com.
In conclusion, the site makemytrip.com doesn’t have malware according to Sucuri; however, Sucuri still graded it as a medium security risk due to a 403 Forbidden warning on the HTTPS version of the page. Unmask Parasites says the site makemytrip.com is clean of parasites. And VirusTotal and Sucuri say the domain makemytrip.com isn’t blacklisted or flagged as malicious by any security vendor.
References
1. SimilarWeb –
2. Wayback Machine –