Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

Already on GitHub? Sign in to your account

scripts/dns-brute: Adds wildcard detection for A and AAAA records. #950

Closed
wants to merge 1 commit into
from

Conversation

Projects
None yet
2 participants

aars commented Jul 25, 2017 edited

Hi!

The dns-brute script will happily list all configured hosts if a domain uses a wildcard record.

This PR adds detection for A and AAAA wildcards, and disables the type of record it thinks is a wildcard. I've added script arg dns-brute.force to override this.

All and any feedback is welcome. If I can improve this somehow (some built-in random string generation maybe? (I found stdnse.generate_random_string)) please let me know!

Cheers

aars commented Jul 25, 2017

PS: I was unable to find any tests for this (or other scripts). If I missed those, please point me in the right direction.

@nmap-bot nmap-bot closed this in 1139e8b Jul 27, 2017

aars commented Jul 27, 2017

Ah! Good call on checking against the wildcard address. That's very useful! Cheers.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment