SolomonSklash / chomp-scan

A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.
https://www.solomonsklash.io/chomp-scan-update.html
GNU General Public License v3.0
393 stars 76 forks source link

[Info] Missing or fake domains. #51

Closed oldesec closed 5 years ago

oldesec commented 5 years ago

Hi

I check #50.

The "all_resolved_domains.txt" file contains a lot of errors.

Missing or fake domains.

So, the performance of the tool is falling.

scan speed up.. but.. Missing domain.

In my opinion, other validation filtering seems to be required.

The massdns tool seems to generate false positives.

SolomonSklash commented 5 years ago

See the comments in #50. I will close this one and address false positive issues there.