Thursday, August 20, 2020

SubOver - A Powerful Subdomain Takeover Tool


Subover is a Hostile Subdomain Takeover tool designed in Python. From start, it has been aimed with speed and efficiency in mind. Till date, SubOver detects 36 services which is much more than any other tool out there. The tool is multithreaded and hence delivers good speed. It can easily detect and report potential subdomain takeovers that exist. The list of potentially hijackable services is very comprehensive and it is what makes this tool so powerful.

Installing
You need to have Python 2.7 installed on your machine. The following additional requirements are required -
  • dnspython
  • colorama
git clone https://github.com/Ice3man543/SubOver.git .
cd SubOver
# consider installing virtualenv
pip install -r requirements.txt
python subover.py -h

Usage
python subover.py -l subdomains.txt -o output_takeovers.txt
  • -l subdomains.txt is the list of target subdomains. These can be discovered using various tool such as sublist3r or others.
  • -o output_takeovers.txtis the name of the output file. (Optional & Currently not very well formatted)
  • -t 20 is the default number of threads that SubOver will use. (Optional)
  • -V is the switch for showing verbose output. (Optional, Default=False)

Currently Checked Services
  • Github
  • Heroku
  • Unbounce
  • Tumblr
  • Shopify
  • Instapage
  • Desk
  • Tictail
  • Campaignmonitor
  • Cargocollective
  • Statuspage
  • Amazonaws
  • Cloudfront
  • Bitbucket
  • Squarespace
  • Smartling
  • Acquia
  • Fastly
  • Pantheon
  • Zendesk
  • Uservoice
  • WPEngine
  • Ghost
  • Freshdesk
  • Pingdom
  • Tilda
  • Wordpress
  • Teamwork
  • Helpjuice
  • Helpscout
  • Cargo
  • Feedpress
  • Freshdesk
  • Surge
  • Surveygizmo
  • Mashery
Count : 36

FAQ
Q: What should my wordlist look like?
A: Your wordlist should include a list of subdomains you're checking and should look something like:
backend.example.com
something.someone.com
apo-setup.fxc.something.com

Your tool sucks!
Yes, you're probably correct. Feel free to:
  • Not use it.
  • Show me how to do it better.

Contact
Twitter: @Ice3man543

Credits


Read more

  1. Pentest Tools Open Source
  2. Pentest Tools Nmap
  3. Pentest Tools Open Source
  4. Pentest Tools Alternative
  5. Hacker Tools Windows
  6. Hacking Tools For Windows
  7. Usb Pentest Tools
  8. Pentest Tools Open Source
  9. Hacker Tools Hardware
  10. Hacking Tools 2020
  11. Hak5 Tools
  12. Pentest Tools Tcp Port Scanner
  13. Hacker Tools Software
  14. Hacker Tools Github
  15. Hacker Tools For Mac
  16. Hacking Tools Mac
  17. Install Pentest Tools Ubuntu
  18. Pentest Tools Alternative
  19. What Is Hacking Tools
  20. Hacker Techniques Tools And Incident Handling
  21. Github Hacking Tools
  22. Hacker Tools Windows
  23. Pentest Tools Linux
  24. Hacking Tools Name
  25. New Hack Tools
  26. Hack Tool Apk
  27. Hacking Tools Kit
  28. Pentest Tools Framework
  29. Nsa Hack Tools Download
  30. Pentest Tools Find Subdomains
  31. Hacker Tools 2019
  32. Hacking Tools Kit
  33. Hacker Tools Free Download
  34. Hacking Tools For Windows Free Download
  35. Pentest Tools For Windows
  36. Hacking Tools Pc
  37. Pentest Tools For Ubuntu
  38. Hacker Techniques Tools And Incident Handling
  39. World No 1 Hacker Software
  40. Pentest Tools Url Fuzzer
  41. Hacking Tools Download
  42. Bluetooth Hacking Tools Kali
  43. Hacker Tools For Ios
  44. Hacking Tools Github
  45. Pentest Tools Review
  46. Pentest Tools List
  47. Hack Tool Apk
  48. Hacking Tools For Pc
  49. Pentest Tools Website Vulnerability
  50. Pentest Automation Tools
  51. Top Pentest Tools
  52. How To Make Hacking Tools
  53. Hacking Tools For Games
  54. Android Hack Tools Github
  55. Hacker Tools For Windows
  56. Hacker Tools
  57. Hack App
  58. Hacker Tools Free
  59. Hacking Tools Windows 10
  60. Pentest Tools Website
  61. Pentest Tools Free
  62. Hacks And Tools
  63. Free Pentest Tools For Windows
  64. Hacking Tools Software
  65. How To Hack
  66. Hack Tools Online
  67. Hacking Tools Pc
  68. Hacking Tools 2020
  69. Nsa Hack Tools Download
  70. Hacking Tools Windows

No comments:

Post a Comment