cname-hijacking

2 articles
sort: new top best
clear filter
0 3/10

Security researcher Ali Razzaq identified and exploited a subdomain takeover vulnerability on a Netlify-hosted subdomain by discovering an unclaimed CNAME record pointing to Netlify and registering the subdomain through Netlify's custom domain feature, earning a $200 bounty.

Ali Razzaq Netlify findsubdomains.com
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 4 hours ago · details
0 6/10

Researchers identified and documented a method to discover and exploit over 55,000 subdomain takeover vulnerabilities on Shopify by analyzing FDNS datasets for CNAMEs pointing to Shopify infrastructure, then claiming unclaimed shop names to hijack subdomains. They developed a script with improved false-positive detection using page error messages, CNAME verification, and REST API checks.

Shopify FDNS dataset Project Sonar buckhacker HackerOne
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 4 hours ago · details