Follow by Email

2020/09/15

Bug Bounty Hunting Methodology || Subdomain Takeover Full Step by Step

Subdomain Takeover 

Subdomain Takeover is pwning the subdomain of the target website. It is



1. Enumeration methodology:

Getting subdomain with tools or some online services.

2. Recon methodology:

Checking for existence of vulnerability with tools or manually.

3. Exploit methodology:

Go to respective third party host website and follow method of respective sites to pwn the subdomain.



Important Links:

1. https://github.com/EdOverflow/can-i-take-over-xyz

2. 

Important Tools:

1. sublist3r: https://github.com/aboul3la/Sublist3r

2. knockpy: https://github.com/guelfoweb/knock

3. Amass: https://github.com/OWASP/Amass

Reference:

1. 

Video Tutorial:

1. youtube.com/ZishanAdThandar/playlists


Bug Bounty Hunting Methodology || Subdomain Takeover Full Step by Step

Subdomain Takeover  Subdomain Takeover is pwning the subdomain of the target website. It is 1. Enumeration methodology: Getting subdomain wi...