expired-domain

1 article
sort: new top best
clear filter
0 7/10

A researcher discovered a subdomain takeover vulnerability on Tokopedia by identifying a subdomain with a CNAME pointing to an expired domain, purchasing that domain for $8, and successfully taking over the subdomain to demonstrate XSS potential before reporting it for a high-severity bounty.

Tokopedia wis4nggeni Namecheap sublist3r knockpy massdns
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details