Subover is a Hostile Subdomain Takeover tool designed in Python. From start, it has been aimed with speed and efficiency in mind. Till date, SubOver detects 36 services which is much more than any other tool out there. The tool is multithreaded and hence delivers good speed. It can easily detect and report potential subdomain takeovers that exist. The list of potentially hijackable services is very comprehensive and it is what makes this tool so powerful.
Installing
You need to have Python 2.7 installed on your machine. The following additional requirements are required -
- dnspython
- colorama
git clone https://github.com/Ice3man543/SubOver.git .
cd SubOver
# consider installing virtualenv
pip install -r requirements.txt
python subover.py -h
Usage
python subover.py -l subdomains.txt -o output_takeovers.txt
-l subdomains.txt
is the list of target subdomains. These can be discovered using various tool such as sublist3r or others.-o output_takeovers.txt
is the name of the output file. (Optional & Currently not very well formatted)-t
20 is the default number of threads that SubOver will use. (Optional)-V
is the switch for showing verbose output. (Optional, Default=False)
Currently Checked Services
- Github
- Heroku
- Unbounce
- Tumblr
- Shopify
- Instapage
- Desk
- Tictail
- Campaignmonitor
- Cargocollective
- Statuspage
- Amazonaws
- Cloudfront
- Bitbucket
- Squarespace
- Smartling
- Acquia
- Fastly
- Pantheon
- Zendesk
- Uservoice
- WPEngine
- Ghost
- Freshdesk
- Pingdom
- Tilda
- Wordpress
- Teamwork
- Helpjuice
- Helpscout
- Cargo
- Feedpress
- Freshdesk
- Surge
- Surveygizmo
- Mashery
FAQ
Q: What should my wordlist look like?
A: Your wordlist should include a list of subdomains you're checking and should look something like:
backend.example.com
something.someone.com
apo-setup.fxc.something.com
Your tool sucks!
Yes, you're probably correct. Feel free to:
- Not use it.
- Show me how to do it better.
Contact
Twitter: @Ice3man543
Credits
- Subdomain Takeover Scanner by 0x94
- subjack : Hostile Subdomain Takeover Tool Written In GO
- Anshumanbh : tko-subs
- Hacking Tools
- Tools Used For Hacking
- Hacker Hardware Tools
- Pentest Tools For Android
- Hackers Toolbox
- Hacking Tools Windows
- Pentest Tools Website Vulnerability
- Usb Pentest Tools
- Hacking Tools For Games
- Kik Hack Tools
- Hacking Tools Hardware
- Pentest Reporting Tools
- Hacker Security Tools
- Pentest Box Tools Download
- Nsa Hack Tools
- Pentest Tools Tcp Port Scanner
- Hacker Tools Free Download
- Hack Tools
- Hacker Tools Apk Download
- Hacker Tools Mac
- Hacking Tools Kit
- Hack Tools 2019
- New Hack Tools
- Hack Tools
- Hack Website Online Tool
- Pentest Tools Find Subdomains
- Hack Tools Github
- Pentest Tools Android
- Hacker Hardware Tools
- Hack App
- Hacker Tools Github
- Hacker Tools Linux
- Pentest Tools Tcp Port Scanner
- World No 1 Hacker Software
- Hacker Tools Hardware
- Beginner Hacker Tools
- Pentest Tools Review
- Hacking Tools For Games
- Hack Tools Download
- Pentest Tools Online
- Hackrf Tools
- Pentest Box Tools Download
- Black Hat Hacker Tools
- Top Pentest Tools
- Hacking Tools Github
- Hack Tools For Windows
- Pentest Tools Linux
- Hacking Tools Name
- Hacker Tools For Pc
- Github Hacking Tools
- Pentest Tools For Mac
- Black Hat Hacker Tools
- Nsa Hacker Tools
- Hack Website Online Tool
- Hacking Tools Hardware
- New Hacker Tools
- Easy Hack Tools
- Hacker Tool Kit
- Hacker Search Tools
- Hacking Tools For Pc
- Hacking Tools And Software
- New Hacker Tools
- Tools Used For Hacking
- World No 1 Hacker Software
- Pentest Tools Apk
- Hacking Tools 2019
- Pentest Tools Apk
- Pentest Tools Website
- Hacking Tools Free Download
- Hacking Tools Name
- Hacker Tools Software
- Hacking Tools 2020
- Hacker Techniques Tools And Incident Handling
- Pentest Tools Website
- Hacker Tools 2019
- Hack Website Online Tool
- Hack Tools
- Pentest Tools Github
- Hacker Tool Kit
- How To Make Hacking Tools
- Github Hacking Tools
- Pentest Tools For Android
- Top Pentest Tools
- Pentest Tools For Mac
- Pentest Tools Framework
- New Hack Tools
- Hacker Tools List
- Hacker Techniques Tools And Incident Handling
- Nsa Hacker Tools
- Hacker Tool Kit
- Pentest Tools Find Subdomains
- Hacker
- Pentest Tools Github
- Hack Rom Tools
- Hack Tool Apk
- Best Pentesting Tools 2018
- Github Hacking Tools
- Pentest Tools Windows
- Hacker Techniques Tools And Incident Handling
- Hacking Tools And Software
- Hackers Toolbox
- Pentest Tools Download
- Hacker Tool Kit
- Hack Tools
- Hacker Tools Linux
- Hacker Tools List
- Hacker Tools Apk
- Hacker Tools Linux
- Hacker Tools Free
- Best Hacking Tools 2019
- Pentest Tools Subdomain
- Beginner Hacker Tools
- Hack Tools For Mac
- Termux Hacking Tools 2019
- Growth Hacker Tools
- Hack Tools Pc
- Hacking Tools For Mac
- What Are Hacking Tools
- Black Hat Hacker Tools
- Blackhat Hacker Tools
- Hacking Tools
- Tools Used For Hacking
- Underground Hacker Sites
- Pentest Tools For Ubuntu
- Free Pentest Tools For Windows
- Hacker Tools For Mac
- Hack Apps
- Pentest Tools Android
- Hacker Hardware Tools
- Hacking Tools Usb
- Kik Hack Tools
- Hack Tool Apk No Root
- Hack Tool Apk No Root
- Pentest Tools For Ubuntu
- Pentest Tools Bluekeep
- Pentest Tools Nmap
- New Hacker Tools
No comments:
Post a Comment