scripts/dns-brute: Adds wildcard detection for A and AAAA records. #950

Closed
wants to merge 1 commit into
from

Conversation

Projects
None yet
2 participants
@aars

aars commented Jul 25, 2017

Hi!

The dns-brute script will happily list all configured hosts if a domain uses a wildcard record.

This PR adds detection for A and AAAA wildcards, and disables the type of record it thinks is a wildcard. I've added script arg dns-brute.force to override this.

All and any feedback is welcome. If I can improve this somehow (some built-in random string generation maybe? (I found stdnse.generate_random_string)) please let me know!

Cheers

@aars

This comment has been minimized.

Show comment
Hide comment
@aars

aars Jul 25, 2017

PS: I was unable to find any tests for this (or other scripts). If I missed those, please point me in the right direction.

aars commented Jul 25, 2017

PS: I was unable to find any tests for this (or other scripts). If I missed those, please point me in the right direction.

@dmiller-nmap

This comment has been minimized.

Show comment
Hide comment
@dmiller-nmap

dmiller-nmap Jul 27, 2017

@nmap-bot nmap-bot closed this in 1139e8b Jul 27, 2017

@aars

This comment has been minimized.

Show comment
Hide comment
@aars

aars Jul 27, 2017

Ah! Good call on checking against the wildcard address. That's very useful! Cheers.

aars commented Jul 27, 2017

Ah! Good call on checking against the wildcard address. That's very useful! Cheers.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment