What we choose is never what we really need.

8/24/2020

SubOver - A Powerful Subdomain Takeover Tool


Subover is a Hostile Subdomain Takeover tool designed in Python. From start, it has been aimed with speed and efficiency in mind. Till date, SubOver detects 36 services which is much more than any other tool out there. The tool is multithreaded and hence delivers good speed. It can easily detect and report potential subdomain takeovers that exist. The list of potentially hijackable services is very comprehensive and it is what makes this tool so powerful.

Installing
You need to have Python 2.7 installed on your machine. The following additional requirements are required -
  • dnspython
  • colorama
git clone https://github.com/Ice3man543/SubOver.git .
cd SubOver
# consider installing virtualenv
pip install -r requirements.txt
python subover.py -h

Usage
python subover.py -l subdomains.txt -o output_takeovers.txt
  • -l subdomains.txt is the list of target subdomains. These can be discovered using various tool such as sublist3r or others.
  • -o output_takeovers.txtis the name of the output file. (Optional & Currently not very well formatted)
  • -t 20 is the default number of threads that SubOver will use. (Optional)
  • -V is the switch for showing verbose output. (Optional, Default=False)

Currently Checked Services
  • Github
  • Heroku
  • Unbounce
  • Tumblr
  • Shopify
  • Instapage
  • Desk
  • Tictail
  • Campaignmonitor
  • Cargocollective
  • Statuspage
  • Amazonaws
  • Cloudfront
  • Bitbucket
  • Squarespace
  • Smartling
  • Acquia
  • Fastly
  • Pantheon
  • Zendesk
  • Uservoice
  • WPEngine
  • Ghost
  • Freshdesk
  • Pingdom
  • Tilda
  • Wordpress
  • Teamwork
  • Helpjuice
  • Helpscout
  • Cargo
  • Feedpress
  • Freshdesk
  • Surge
  • Surveygizmo
  • Mashery
Count : 36

FAQ
Q: What should my wordlist look like?
A: Your wordlist should include a list of subdomains you're checking and should look something like:
backend.example.com
something.someone.com
apo-setup.fxc.something.com

Your tool sucks!
Yes, you're probably correct. Feel free to:
  • Not use it.
  • Show me how to do it better.

Contact
Twitter: @Ice3man543

Credits


Read more
  1. Hack Tools For Mac
  2. Hacking Tools Mac
  3. Hacker Tools For Windows
  4. Hack Tools For Games
  5. Github Hacking Tools
  6. Blackhat Hacker Tools
  7. Hacking Tools Mac
  8. Best Pentesting Tools 2018
  9. Hacker Tools List
  10. Pentest Tools For Windows
  11. Hacker Tools 2020
  12. World No 1 Hacker Software
  13. Pentest Tools Find Subdomains
  14. Hacking Tools And Software
  15. Hack Tools For Games
  16. Hacker Tools Apk Download
  17. Hack Tools Github
  18. Hack Tool Apk No Root
  19. Kik Hack Tools
  20. Black Hat Hacker Tools
  21. World No 1 Hacker Software
  22. Hacking Tools For Pc
  23. Computer Hacker
  24. Nsa Hack Tools
  25. Pentest Tools Linux
  26. Pentest Tools For Windows
  27. Hack Tools Pc
  28. Hacking Tools Name
  29. Hacking Tools
  30. Hacker Tools Github
  31. Wifi Hacker Tools For Windows
  32. Hack Tools Github
  33. Hack Tools For Mac
  34. Pentest Tools Nmap
  35. New Hacker Tools
  36. Hack Tools
  37. Physical Pentest Tools
  38. Physical Pentest Tools
  39. Pentest Tools Github
  40. Tools 4 Hack
  41. Tools 4 Hack
  42. Hack Tools For Windows
  43. Blackhat Hacker Tools
  44. Tools 4 Hack
  45. Pentest Automation Tools
  46. How To Hack
  47. Hacker Tools Apk
  48. Hacker Tools Apk
  49. Hacking Tools Free Download
  50. Black Hat Hacker Tools
  51. Hacker Tools Windows
  52. Hacker Tools List
  53. Hack Website Online Tool
  54. Pentest Tools Review
  55. Hack Tools Mac
  56. Black Hat Hacker Tools
  57. Beginner Hacker Tools
  58. Hacking Apps
  59. Pentest Automation Tools
  60. Hacking Tools For Beginners
  61. Hack Tools For Games
  62. Hack Tools For Windows
  63. Hack Tools For Windows
  64. Growth Hacker Tools
  65. Hacker Tools For Mac
  66. Hacking App
  67. Hacker Tool Kit
  68. How To Install Pentest Tools In Ubuntu
  69. Pentest Automation Tools
  70. Best Pentesting Tools 2018
  71. Hacker Tools Free
  72. Best Hacking Tools 2020
  73. Hacker Tools Software
  74. Top Pentest Tools
  75. Hacker Tools For Mac
  76. Pentest Tools Windows
  77. Pentest Tools Review
  78. Hacking Tools 2020
  79. Hacker Tools Software
  80. Hacker Tools Online
  81. Hacking Tools Download
  82. How To Make Hacking Tools
  83. Pentest Tools Bluekeep
  84. Pentest Tools Apk
  85. Android Hack Tools Github
  86. Hacking Tools Free Download
  87. Usb Pentest Tools
  88. Pentest Tools Url Fuzzer
  89. Pentest Automation Tools
  90. World No 1 Hacker Software
  91. Pentest Tools Find Subdomains
  92. Tools Used For Hacking
  93. Physical Pentest Tools
  94. Hack Tools Github
  95. Hacking Tools 2019
  96. Pentest Tools Bluekeep
  97. Hack Tools
  98. Pentest Tools Online
  99. Best Hacking Tools 2020
  100. Pentest Tools Online
  101. Hacking Apps

No comments: