Уровень 0 · материалов: 3
В кластер включаются документы, описывающие технические методы поиска, перехвата или компрометации доменов и поддоменов.
Общие признаки: безопасность доменов, перехват доменных имен, поиск поддоменов, эксплуатация WHOIS
Группа выше: Безопасность DNS
Смысл: The main idea is that domain search queries are being leaked through whois services, specifically Network Solutions, allowing bots to steal available domains within minutes of a user checking their availability.
Domain names are being stolen within minutes of availability checks due to information leaks in the Network Solutions whois service.
Смысл: The text describes a method for stealing multiple domain names by finding abandoned administrative email addresses via WHOIS databases, re-registering those emails, and then recovering the domains through the registrar's password recovery system.
A guide on how to steal thousands of domains by identifying and re-registering abandoned administrative email addresses.
Смысл: The main idea is that identifying all subdomains of a web asset is crucial for security because forgotten or unprotected subdomains often serve as entry points for hackers. The text provides a practical directory of tools to automate this discovery process for defensive purposes.
A technical guide listing and explaining ten tools for subdomain discovery to help security professionals and site owners secure their infrastructure.