danielfett / yesses

yesses Security Configuration Scanner: Tool to enumerate domains and IPs and test those domains and IPs for basic network and web security properties.
GNU Affero General Public License v3.0
5 stars 3 forks source link

Find unregistered CNAME or NS record targets #23

Open danielfett opened 5 years ago

danielfett commented 5 years ago

...to prevent subdomain takeover.

See, e.g., https://securityblog.switch.ch/2017/11/14/subdomain-hijacking/