Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Unable to find subdomain takeover for unbounce #17

Closed
ranjit-git opened this issue Jul 5, 2018 · 6 comments
Closed

Unable to find subdomain takeover for unbounce #17

ranjit-git opened this issue Jul 5, 2018 · 6 comments

Comments

@ranjit-git
Copy link

create your wordlist with studio.wrike.com
this domain is takeover possible but your tool is unable to detect it.

@Ice3man543
Copy link
Owner

Can you provide more detail?

@Damian89
Copy link

Hi,
its because the http header has to be checked and not the response itself (noticed it some time ago). The markers you are using are correct (Page does not exists, ...) but it looks like you are checking the http_body only, but in this case also the http header has to be checked.

@Ice3man543
Copy link
Owner

Thanks for the detailed response. I'll fix this really soon, I promise.

@Damian89
Copy link

You are welcome!

Another example is: explore.luxuryretreats.com

But: studio.wrike.com and explore.luxuryretreats.com are not vulnerable (since unbounce is a special case, we have to check if its really possible to register those subdomains @ unbounce). In both cases thats not the case!

@Ice3man543
Copy link
Owner

Yeah, I have read that ubvounce only allows takeover when the domain wasn't added even once to a service. Else not.

@Ice3man543
Copy link
Owner

Sorry for the late response, actually the public project is discontinued. Please check https://github.com/haccer/subjack. I am not maintaining this at the moment.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants