Stratus-Security / Subdominator

The Internets #1 Subdomain Takeover Tool
https://www.stratussecurity.com
MIT License
228 stars 19 forks source link

Easyredir #6

Closed dshieble closed 5 months ago

dshieble commented 9 months ago

Thanks for sharing this awesome tool.

I believe that EasyRedir is no longer vulnerable for subdomain takeovers. They now require hostname verification on the source hostname. See https://help.easyredir.com/en/articles/6810071-what-is-hostname-verification.

It is possible that I am misunderstanding something about the expected flow. Please let me know if this is the case. Thanks!

coj337 commented 5 months ago

Thanks for letting me know, even if it took me a few months! I confirmed they patched it at some point in January so I have removed the fingerprint 😃