scripts/dns-brute: Adds wildcard detection for A and AAAA records. #950

wants to merge 1 commit into


None yet
2 participants

aars commented Jul 25, 2017


The dns-brute script will happily list all configured hosts if a domain uses a wildcard record.

This PR adds detection for A and AAAA wildcards, and disables the type of record it thinks is a wildcard. I've added script arg dns-brute.force to override this.

All and any feedback is welcome. If I can improve this somehow (some built-in random string generation maybe? (I found stdnse.generate_random_string)) please let me know!


aars commented Jul 25, 2017

PS: I was unable to find any tests for this (or other scripts). If I missed those, please point me in the right direction.

@nmap-bot nmap-bot closed this in 1139e8b Jul 27, 2017

aars commented Jul 27, 2017

Ah! Good call on checking against the wildcard address. That's very useful! Cheers.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment