-
Im enumerating through a high number of subdomains from a list and when getting around halfway down the list, I get a message "too many open files " and the enumeration stops
![image](https://user…
-
Hello there.
Thanks for the awesome tool.
I have a question, which kind of subscription is required to takeover subdomains nowadays on Microsoft Azure?
I can't manage to do it.
Any pointers? I w…
-
There may be other ways that public IPs get assigned to resources in an AWS account that would be worth adding to the enumeration logic:
- Nat Gateways
- Eks Clusters
- Elastic Load Balancers
- Re…
-
### Describe the bug
Admin console impersonate feature does not properly work on cross-domain setup when hostname-admin does not match realm hostname.
Impersonate feature invokes admin endpoint on…
-
Hey Team,
I am a Security researcher and Bug Bounty Hunter, I have found one of your domains vulnerable to subdomain takeover due to unclaimed cname pointing to GitHub which means anyone on the int…
-
When use: 55. Run All Security Tools
```
[!] Error running virustotal_scan.py
Error generating TXT report: [Errno 36] File name too long: '/home/user/tools/argus/results/example.com_Censys Reconnai…
-
python3 subowner.py -f list.txt
In `list.txt`, the URLs contain either with or without a schema. Please let me know.
For example:
cat list.txt
https://github.com
or
cat list.txt
githu…
-
## Service name
headwayapp
## Fingerprint
The page you were looking for doesn't exist (404)
## Proof
## Documentation
https://docs.headwayapp.co/custom-domain
-
Communications via https would be beneficial.
Jetty and Karaf are fully capable of supporting HTTPs; sorting out SSL certificates without requiring anything of the casual user could require some ca…
-
Right now subdomain takeover is classified with a base severity of P2, per VRT.
I think it should be changed to `varies`: it would require researchers to prove impact (or at least potential impact), …