Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Verizon Small Business #20

Open
indianajson opened this issue Jun 9, 2021 · 6 comments
Open

Verizon Small Business #20

indianajson opened this issue Jun 9, 2021 · 6 comments
Labels
Investigation Needed Further investigation is needed to confirm vulnerability

Comments

@indianajson
Copy link
Owner

indianajson commented Jun 9, 2021

Service Verizon Small Business

Status Unknown

Nameserver

yns1.yahoo.com
yns2.yahoo.com

Explanation

Version acquired Yahoo and has finally begun to shut down old Yahoo websites in favor of rebranded Verizon websites. This has modified the flow for this and as of current we are unsure if it is still possible.

Old Explanation

Yahoo Small Business provides websites, domains, and hosting services. First, create a free account. Once you log in click Create a website today. Next, follow the steps to create a "free website" and click Publish. You will be asked if you want to use a Custom Domain or a free subdomain, select Custom Domain. On the next page select the Basic Plan. After this, there will be a line of text on the next page that reads Want to use your existing domain name? Click here., click it and enter your vulnerable domain. If the domain is available it will tell you and ask you to verify you own the domain. Assuming you have authorized to perform the takeover from a bug bounty program then proceed. It will then ask for your credit card and details. Once finished the DNS will begin to propagate and the takeover will be successful.

@indianajson indianajson added the Vulnerable This service is vulnerable to takeover. label Jun 9, 2021
@indianajson indianajson changed the title Yahoo Small Business - Vulnerable Yahoo Small Business Jun 12, 2021
@dopo123
Copy link

dopo123 commented Feb 10, 2022

does this still work

@dopo123
Copy link

dopo123 commented Feb 10, 2022

doesn't seem to, or maybe i am doing it wrong @indianajson

@breezemight
Copy link

did they change all the nameserver cname prefixes from yns* to ns*?

@indianajson
Copy link
Owner Author

@dopo123 @breezemight The flow has definitely changed now that they are under Verizon, before you could "add the domain" to see if it worked and then pay for it. Now it looks like you have to pay for it first. I imagine something is still possible given you can add a "custom domain" if you pay, but don't have the time at the moment to fully investigate.

@indianajson indianajson added Investigation Needed Further investigation is needed to confirm vulnerability and removed Vulnerable This service is vulnerable to takeover. labels Jun 12, 2022
@indianajson indianajson changed the title Yahoo Small Business Verizon Small Business Jun 12, 2022
@marcelo321
Copy link

I think we have to pay @indianajson, right?

@indianajson
Copy link
Owner Author

I think we have to pay @indianajson, right?

Yes, it seems you have to pay then add a custom domain to the service, but I haven't independently verified this since the merger with Verizon.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Investigation Needed Further investigation is needed to confirm vulnerability
Projects
None yet
Development

No branches or pull requests

4 participants