What we choose is never what we really need.

8/21/2020

SubOver - A Powerful Subdomain Takeover Tool


Subover is a Hostile Subdomain Takeover tool designed in Python. From start, it has been aimed with speed and efficiency in mind. Till date, SubOver detects 36 services which is much more than any other tool out there. The tool is multithreaded and hence delivers good speed. It can easily detect and report potential subdomain takeovers that exist. The list of potentially hijackable services is very comprehensive and it is what makes this tool so powerful.

Installing
You need to have Python 2.7 installed on your machine. The following additional requirements are required -
  • dnspython
  • colorama
git clone https://github.com/Ice3man543/SubOver.git .
cd SubOver
# consider installing virtualenv
pip install -r requirements.txt
python subover.py -h

Usage
python subover.py -l subdomains.txt -o output_takeovers.txt
  • -l subdomains.txt is the list of target subdomains. These can be discovered using various tool such as sublist3r or others.
  • -o output_takeovers.txtis the name of the output file. (Optional & Currently not very well formatted)
  • -t 20 is the default number of threads that SubOver will use. (Optional)
  • -V is the switch for showing verbose output. (Optional, Default=False)

Currently Checked Services
  • Github
  • Heroku
  • Unbounce
  • Tumblr
  • Shopify
  • Instapage
  • Desk
  • Tictail
  • Campaignmonitor
  • Cargocollective
  • Statuspage
  • Amazonaws
  • Cloudfront
  • Bitbucket
  • Squarespace
  • Smartling
  • Acquia
  • Fastly
  • Pantheon
  • Zendesk
  • Uservoice
  • WPEngine
  • Ghost
  • Freshdesk
  • Pingdom
  • Tilda
  • Wordpress
  • Teamwork
  • Helpjuice
  • Helpscout
  • Cargo
  • Feedpress
  • Freshdesk
  • Surge
  • Surveygizmo
  • Mashery
Count : 36

FAQ
Q: What should my wordlist look like?
A: Your wordlist should include a list of subdomains you're checking and should look something like:
backend.example.com
something.someone.com
apo-setup.fxc.something.com

Your tool sucks!
Yes, you're probably correct. Feel free to:
  • Not use it.
  • Show me how to do it better.

Contact
Twitter: @Ice3man543

Credits


More info
  1. Hacking Tools
  2. Tools Used For Hacking
  3. Hacker Hardware Tools
  4. Pentest Tools For Android
  5. Hackers Toolbox
  6. Hacking Tools Windows
  7. Pentest Tools Website Vulnerability
  8. Usb Pentest Tools
  9. Hacking Tools For Games
  10. Kik Hack Tools
  11. Hacking Tools Hardware
  12. Pentest Reporting Tools
  13. Hacker Security Tools
  14. Pentest Box Tools Download
  15. Nsa Hack Tools
  16. Pentest Tools Tcp Port Scanner
  17. Hacker Tools Free Download
  18. Hack Tools
  19. Hacker Tools Apk Download
  20. Hacker Tools Mac
  21. Hacking Tools Kit
  22. Hack Tools 2019
  23. New Hack Tools
  24. Hack Tools
  25. Hack Website Online Tool
  26. Pentest Tools Find Subdomains
  27. Hack Tools Github
  28. Pentest Tools Android
  29. Hacker Hardware Tools
  30. Hack App
  31. Hacker Tools Github
  32. Hacker Tools Linux
  33. Pentest Tools Tcp Port Scanner
  34. World No 1 Hacker Software
  35. Hacker Tools Hardware
  36. Beginner Hacker Tools
  37. Pentest Tools Review
  38. Hacking Tools For Games
  39. Hack Tools Download
  40. Pentest Tools Online
  41. Hackrf Tools
  42. Pentest Box Tools Download
  43. Black Hat Hacker Tools
  44. Top Pentest Tools
  45. Hacking Tools Github
  46. Hack Tools For Windows
  47. Pentest Tools Linux
  48. Hacking Tools Name
  49. Hacker Tools For Pc
  50. Github Hacking Tools
  51. Pentest Tools For Mac
  52. Black Hat Hacker Tools
  53. Nsa Hacker Tools
  54. Hack Website Online Tool
  55. Hacking Tools Hardware
  56. New Hacker Tools
  57. Easy Hack Tools
  58. Hacker Tool Kit
  59. Hacker Search Tools
  60. Hacking Tools For Pc
  61. Hacking Tools And Software
  62. New Hacker Tools
  63. Tools Used For Hacking
  64. World No 1 Hacker Software
  65. Pentest Tools Apk
  66. Hacking Tools 2019
  67. Pentest Tools Apk
  68. Pentest Tools Website
  69. Hacking Tools Free Download
  70. Hacking Tools Name
  71. Hacker Tools Software
  72. Hacking Tools 2020
  73. Hacker Techniques Tools And Incident Handling
  74. Pentest Tools Website
  75. Hacker Tools 2019
  76. Hack Website Online Tool
  77. Hack Tools
  78. Pentest Tools Github
  79. Hacker Tool Kit
  80. How To Make Hacking Tools
  81. Github Hacking Tools
  82. Pentest Tools For Android
  83. Top Pentest Tools
  84. Pentest Tools For Mac
  85. Pentest Tools Framework
  86. New Hack Tools
  87. Hacker Tools List
  88. Hacker Techniques Tools And Incident Handling
  89. Nsa Hacker Tools
  90. Hacker Tool Kit
  91. Pentest Tools Find Subdomains
  92. Hacker
  93. Pentest Tools Github
  94. Hack Rom Tools
  95. Hack Tool Apk
  96. Best Pentesting Tools 2018
  97. Github Hacking Tools
  98. Pentest Tools Windows
  99. Hacker Techniques Tools And Incident Handling
  100. Hacking Tools And Software
  101. Hackers Toolbox
  102. Pentest Tools Download
  103. Hacker Tool Kit
  104. Hack Tools
  105. Hacker Tools Linux
  106. Hacker Tools List
  107. Hacker Tools Apk
  108. Hacker Tools Linux
  109. Hacker Tools Free
  110. Best Hacking Tools 2019
  111. Pentest Tools Subdomain
  112. Beginner Hacker Tools
  113. Hack Tools For Mac
  114. Termux Hacking Tools 2019
  115. Growth Hacker Tools
  116. Hack Tools Pc
  117. Hacking Tools For Mac
  118. What Are Hacking Tools
  119. Black Hat Hacker Tools
  120. Blackhat Hacker Tools
  121. Hacking Tools
  122. Tools Used For Hacking
  123. Underground Hacker Sites
  124. Pentest Tools For Ubuntu
  125. Free Pentest Tools For Windows
  126. Hacker Tools For Mac
  127. Hack Apps
  128. Pentest Tools Android
  129. Hacker Hardware Tools
  130. Hacking Tools Usb
  131. Kik Hack Tools
  132. Hack Tool Apk No Root
  133. Hack Tool Apk No Root
  134. Pentest Tools For Ubuntu
  135. Pentest Tools Bluekeep
  136. Pentest Tools Nmap
  137. New Hacker Tools

No comments: