cloudapp

1 article
sort: new top best
clear filter
0 7/10

A subdomain takeover vulnerability in Starbucks where svcgatewayus.starbucks.com pointed to a non-existent Azure Cloud Service resource, allowing takeover via DNS NXDOMAIN verification and custom domain registration in Azure portal. The researcher demonstrates the attack methodology specific to Azure's dedicated IP architecture versus virtual host-based services.

Starbucks Microsoft Azure svcgatewayus.starbucks.com 1fd05821-7501-40de-9e44-17235e7ab48b.cloudapp.net Patrik Hudak Visual Studio
0xpatrik.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details