
तेज़ सबडोमेन टेकओवर स्कैनर जो ज्ञात फिंगरप्रिंट्स के विरुद्ध DNS CNAME रिकॉर्ड की जांच करता है ताकि कमजोर सबडोमेन का पता लगा सके। Go में निर्मित, मल्टी-थ्रेडेड स्कैनिंग और ऑटो-अपडेट के साथ।
सबडोमेन टेकओवर एक सामान्य कमजोरी है जो हमलावर को लक्ष्य डोमेन के एक सबडोमेन पर नियंत्रण प्राप्त करने और किसी संगठन के डोमेन के लिए इच्छित उपयोगकर्ताओं को एक ऐसी वेबसाइट पर रीडायरेक्ट करने की अनुमति देती है जो दुर्भावनापूर्ण गतिविधियाँ करती है, जैसे फ़िशिंग अभियान, उपयोगकर्ता कुकीज़ चुराना, आदि। यह तब होता है जब हमलावर लक्ष्य डोमेन के एक सबडोमेन पर नियंत्रण प्राप्त कर लेता है। आमतौर पर, ऐसा तब होता है जब सबडोमेन के DNS में CNAME होता है, लेकिन कोई होस्ट इसके लिए सामग्री प्रदान नहीं कर रहा होता है। Subhunter सबडोमेन की एक दी गई सूची लेता है और इस कमजोरी की जांच करने के लिए उन्हें स्कैन करता है।
रिलीज़ से डाउनलोड करें
स्रोत से बनाएँ:
$ git clone https://github.com/umutcamliyurt/Subhunter.git
$ go build subhunter.go
Usage of subhunter:
-l string
स्कैन करने के लिए होस्ट की सूची वाली फ़ाइल
-o string
परिणाम सहेजने के लिए फ़ाइल
-t int
स्कैनिंग के लिए थ्रेड्स की संख्या (डिफ़ॉल्ट 50)
-timeout int
सेकंड में टाइमआउट (डिफ़ॉल्ट 20)
./Subhunter -l subdomains.txt -o test.txt
____ _ _ _
/ ___| _ _ | |__ | |__ _ _ _ __ | |_ ___ _ __
\___ \ | | | | | '_ \ | '_ \ | | | | | '_ \ | __| / _ \ | '__|
___) | | |_| | | |_) | | | | | | |_| | | | | | | |_ | __/ | |
|____/ \__,_| |_.__/ |_| |_| \__,_| |_| |_| \__| \___| |_|
A fast subdomain takeover tool
Created by umutcamliyurt
Loaded 88 fingerprints for current scan
-----------------------------------------------------------------------------
[+] Nothing found at www.ubereats.com: Not Vulnerable
[+] Nothing found at testauth.ubereats.com: Not Vulnerable
[+] Nothing found at apple-maps-app-clip.ubereats.com: Not Vulnerable
[+] Nothing found at about.ubereats.com: Not Vulnerable
[+] Nothing found at beta.ubereats.com: Not Vulnerable
[+] Nothing found at ewp.ubereats.com: Not Vulnerable
[+] Nothing found at edgetest.ubereats.com: Not Vulnerable
[+] Nothing found at guest.ubereats.com: Not Vulnerable
[+] Google Cloud: Possible takeover found at testauth.ubereats.com: Vulnerable
[+] Nothing found at info.ubereats.com: Not Vulnerable
[+] Nothing found at learn.ubereats.com: Not Vulnerable
[+] Nothing found at merchants.ubereats.com: Not Vulnerable
[+] Nothing found at guest-beta.ubereats.com: Not Vulnerable
[+] Nothing found at merchant-help.ubereats.com: Not Vulnerable
[+] Nothing found at merchants-beta.ubereats.com: Not Vulnerable
[+] Nothing found at merchants-staging.ubereats.com: Not Vulnerable
[+] Nothing found at messages.ubereats.com: Not Vulnerable
[+] Nothing found at order.ubereats.com: Not Vulnerable
[+] Nothing found at restaurants.ubereats.com: Not Vulnerable
[+] Nothing found at payments.ubereats.com: Not Vulnerable
[+] Nothing found at static.ubereats.com: Not Vulnerable
Subhunter exiting...
Results written to test.txt