mypdns / matrix

My Privacy DNS #Matrix lists for blacklisting
https://mypdns.org/
Other
73 stars 10 forks source link

43.156.237.181 #630

Closed spirillen closed 3 weeks ago

spirillen commented 3 weeks ago

Comments

Thanks to @g0d33p3rsec for this one

Impersonate gmail

http://43.156.237.181/v3/signin/identifier?continue=https%3A%2F%2Faccounts.google.com%2F%3F%26xrealip%3D185.220.101.42&followup=https%3A%2F%2Faccounts.google.com%2F%3F%26xrealip%3D185.220.101.42&ifkv=AS5LTASF7_j6PXASk16sciT7GgJORZHSTJRpXcOj3XMnMzPaxHyl4FjcnMm8CASnEBLji-TSMRzMzg&passive=1209600&xrealip=185.220.101.42&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S352457725%3A1720010903967641&ddm=0

Wildcard domain records

32.181.237.156.43|phishing

Sub-Domain records

null

Hosts (RFC:953) specific records, not used by DNS RPZ firewalls

null

SeafeSearch records

null

Screenshots

Screenshot ![image](https://github.com/mypdns/matrix/assets/44526987/0912c748-643e-4f4e-afa4-c91693d010fe)

Links to external sources

https://github.com/mitchellkrogza/phishing/pull/436

logs from uBlock Origin

N/A