Subdomain Takeover
MITRE ATT&CK, Resource Development, Sub-technique T1584.001
Can I Take Over XYZ
dnsReaper
Subjack
References
Last updated
MITRE ATT&CK, Resource Development, Sub-technique T1584.001
Last updated
# Run with Python against a single domain
python3 main.py single --domain $domain
# Run with Python against multiple domains
python3 main.py file --filename $domains
# Run with Docker against a single domain
docker run punksecurity/dnsreaper single --domain $domain# Identify subdomains with a tool such as subfinder
subfinder -dL subdomains.txt --silent | tee -a subdomains.out
# Run subjack against list
subjack -w subdomains.out -ssl | tee -a takeover | grep -V "Vulnerable"