Subover is a Hostile Subdomain Takeover tool designed in Python. From start, it has been aimed with speed and efficiency in mind. Till date, SubOver detects 36 services which is much more than any other tool out there. The tool is multithreaded and hence delivers good speed. It can easily detect and report potential subdomain takeovers that exist. The list of potentially hijackable services is very comprehensive and it is what makes this tool so powerful.
Installing
You need to have Python 2.7 installed on your machine. The following additional requirements are required -
- dnspython
- colorama
git clone https://github.com/Ice3man543/SubOver.git .
cd SubOver
# consider installing virtualenv
pip install -r requirements.txt
python subover.py -h
Usage
python subover.py -l subdomains.txt -o output_takeovers.txt
-l subdomains.txt
is the list of target subdomains. These can be discovered using various tool such as sublist3r or others.-o output_takeovers.txt
is the name of the output file. (Optional & Currently not very well formatted)-t
20 is the default number of threads that SubOver will use. (Optional)-V
is the switch for showing verbose output. (Optional, Default=False)
Currently Checked Services
- Github
- Heroku
- Unbounce
- Tumblr
- Shopify
- Instapage
- Desk
- Tictail
- Campaignmonitor
- Cargocollective
- Statuspage
- Amazonaws
- Cloudfront
- Bitbucket
- Squarespace
- Smartling
- Acquia
- Fastly
- Pantheon
- Zendesk
- Uservoice
- WPEngine
- Ghost
- Freshdesk
- Pingdom
- Tilda
- Wordpress
- Teamwork
- Helpjuice
- Helpscout
- Cargo
- Feedpress
- Freshdesk
- Surge
- Surveygizmo
- Mashery
FAQ
Q: What should my wordlist look like?
A: Your wordlist should include a list of subdomains you're checking and should look something like:
backend.example.com
something.someone.com
apo-setup.fxc.something.com
Your tool sucks!
Yes, you're probably correct. Feel free to:
- Not use it.
- Show me how to do it better.
Contact
Twitter: @Ice3man543
Credits
- Subdomain Takeover Scanner by 0x94
- subjack : Hostile Subdomain Takeover Tool Written In GO
- Anshumanbh : tko-subs
- Hack Tools For Mac
- Hacking Tools Mac
- Hacker Tools For Windows
- Hack Tools For Games
- Github Hacking Tools
- Blackhat Hacker Tools
- Hacking Tools Mac
- Best Pentesting Tools 2018
- Hacker Tools List
- Pentest Tools For Windows
- Hacker Tools 2020
- World No 1 Hacker Software
- Pentest Tools Find Subdomains
- Hacking Tools And Software
- Hack Tools For Games
- Hacker Tools Apk Download
- Hack Tools Github
- Hack Tool Apk No Root
- Kik Hack Tools
- Black Hat Hacker Tools
- World No 1 Hacker Software
- Hacking Tools For Pc
- Computer Hacker
- Nsa Hack Tools
- Pentest Tools Linux
- Pentest Tools For Windows
- Hack Tools Pc
- Hacking Tools Name
- Hacking Tools
- Hacker Tools Github
- Wifi Hacker Tools For Windows
- Hack Tools Github
- Hack Tools For Mac
- Pentest Tools Nmap
- New Hacker Tools
- Hack Tools
- Physical Pentest Tools
- Physical Pentest Tools
- Pentest Tools Github
- Tools 4 Hack
- Tools 4 Hack
- Hack Tools For Windows
- Blackhat Hacker Tools
- Tools 4 Hack
- Pentest Automation Tools
- How To Hack
- Hacker Tools Apk
- Hacker Tools Apk
- Hacking Tools Free Download
- Black Hat Hacker Tools
- Hacker Tools Windows
- Hacker Tools List
- Hack Website Online Tool
- Pentest Tools Review
- Hack Tools Mac
- Black Hat Hacker Tools
- Beginner Hacker Tools
- Hacking Apps
- Pentest Automation Tools
- Hacking Tools For Beginners
- Hack Tools For Games
- Hack Tools For Windows
- Hack Tools For Windows
- Growth Hacker Tools
- Hacker Tools For Mac
- Hacking App
- Hacker Tool Kit
- How To Install Pentest Tools In Ubuntu
- Pentest Automation Tools
- Best Pentesting Tools 2018
- Hacker Tools Free
- Best Hacking Tools 2020
- Hacker Tools Software
- Top Pentest Tools
- Hacker Tools For Mac
- Pentest Tools Windows
- Pentest Tools Review
- Hacking Tools 2020
- Hacker Tools Software
- Hacker Tools Online
- Hacking Tools Download
- How To Make Hacking Tools
- Pentest Tools Bluekeep
- Pentest Tools Apk
- Android Hack Tools Github
- Hacking Tools Free Download
- Usb Pentest Tools
- Pentest Tools Url Fuzzer
- Pentest Automation Tools
- World No 1 Hacker Software
- Pentest Tools Find Subdomains
- Tools Used For Hacking
- Physical Pentest Tools
- Hack Tools Github
- Hacking Tools 2019
- Pentest Tools Bluekeep
- Hack Tools
- Pentest Tools Online
- Best Hacking Tools 2020
- Pentest Tools Online
- Hacking Apps
No comments:
Post a Comment