Best tool to check list of subdomains for possible takeover?
What is the best way to check a massive list of subdomains for possible takeover?
Continue reading Best tool to check list of subdomains for possible takeover?
Collaborate Disseminate
What is the best way to check a massive list of subdomains for possible takeover?
Continue reading Best tool to check list of subdomains for possible takeover?
I have seen that all our subdomains can be eaisly be scanned with help of websites like dnsdumpster.
What is the best way to protect subdomains of any website from getting scanned or revealed via sites like dnsdumpster.
I found out that the domain xyz.example.com gives me a 404 error when visited. This domain has the following CNAME >
xyz.example.com.ent.syn-alias.com (same 404 page)
Which is pointing to another CNAME >
xyz.example.com…. Continue reading Is subdomain takeover possible in this case?
!I’mgetting this massagewhile I’m searching for subdomain “apac.foodpanda.in”……..can anyone explainit what does it mean.
I understand there are security risks with regards to cross subdomain session cookie attacks which are covered in other posts. However what about PHP script security?
If a user with subdomain FTP access on a cPanel server uploads a PHP s… Continue reading Cross subdomain PHP security?
I am a developer at a company that makes landing page software. Users can register and build their own page and publish it. We will provide them a subdomain on our whitelabel domain: test-link.whitelabel-domain.com.
Some use… Continue reading How to check hosted content for fraud?
I have found research efforts on explaining how sub domain takeovers can take place authored by a gentleman named “Patrik Hudák”. Through his site’s blogs he illustrates and conveys an understanding of the phenomenon:
https:… Continue reading How can I determine the vulnerability for a sub domain takeover attack?
I’m relatively new to Subdomain Takeover and have a lack of knowledge – that I want to fill – wether and when it is possible to hijack a subdomain.
I started to do learning by doing and found a subdomain that gave me a 404 … Continue reading Subdomain Takeover At Amazon ELB-Server?
I’m writing a blog post analyzing a list of phishing domains and I’m coming across a lot of IDN homograph attack domains and these “subdomain attack domains” but I cannot find the technical/good way to describe it.
For examp… Continue reading What is this phishing technique called using subdomains
LetsEncrypt certificates have been created for example.com and www.example.com. This is a Linux server on IP 123.123.123.1.
I would like to add foo.example.com and bar.example.com, but these subdomains are set to 123.123.123.2 (MS2012 ser… Continue reading Setting up LetsEncrypt SSL for domains/subdomains on two servers