Thursday, August 20, 2020

SubOver - A Powerful Subdomain Takeover Tool


Subover is a Hostile Subdomain Takeover tool designed in Python. From start, it has been aimed with speed and efficiency in mind. Till date, SubOver detects 36 services which is much more than any other tool out there. The tool is multithreaded and hence delivers good speed. It can easily detect and report potential subdomain takeovers that exist. The list of potentially hijackable services is very comprehensive and it is what makes this tool so powerful.

Installing
You need to have Python 2.7 installed on your machine. The following additional requirements are required -
  • dnspython
  • colorama
git clone https://github.com/Ice3man543/SubOver.git .
cd SubOver
# consider installing virtualenv
pip install -r requirements.txt
python subover.py -h

Usage
python subover.py -l subdomains.txt -o output_takeovers.txt
  • -l subdomains.txt is the list of target subdomains. These can be discovered using various tool such as sublist3r or others.
  • -o output_takeovers.txtis the name of the output file. (Optional & Currently not very well formatted)
  • -t 20 is the default number of threads that SubOver will use. (Optional)
  • -V is the switch for showing verbose output. (Optional, Default=False)

Currently Checked Services
  • Github
  • Heroku
  • Unbounce
  • Tumblr
  • Shopify
  • Instapage
  • Desk
  • Tictail
  • Campaignmonitor
  • Cargocollective
  • Statuspage
  • Amazonaws
  • Cloudfront
  • Bitbucket
  • Squarespace
  • Smartling
  • Acquia
  • Fastly
  • Pantheon
  • Zendesk
  • Uservoice
  • WPEngine
  • Ghost
  • Freshdesk
  • Pingdom
  • Tilda
  • Wordpress
  • Teamwork
  • Helpjuice
  • Helpscout
  • Cargo
  • Feedpress
  • Freshdesk
  • Surge
  • Surveygizmo
  • Mashery
Count : 36

FAQ
Q: What should my wordlist look like?
A: Your wordlist should include a list of subdomains you're checking and should look something like:
backend.example.com
something.someone.com
apo-setup.fxc.something.com

Your tool sucks!
Yes, you're probably correct. Feel free to:
  • Not use it.
  • Show me how to do it better.

Contact
Twitter: @Ice3man543

Credits


Related posts
  1. Hacker Security Tools
  2. Hacker Tools Windows
  3. Hack And Tools
  4. Hack Tools For Mac
  5. Hacker
  6. Black Hat Hacker Tools
  7. Hack Tools Github
  8. Hacking Tools Github
  9. Hacker Tools Github
  10. Best Hacking Tools 2019
  11. Hack Tools For Pc
  12. Pentest Tools For Ubuntu
  13. Hack Tools For Games
  14. Hacker Tools Software
  15. Hacker Tools For Mac
  16. Pentest Tools Nmap
  17. Hacking Tools For Windows 7
  18. Tools Used For Hacking
  19. Hacker Tools 2019
  20. Hacker Tools Free
  21. Bluetooth Hacking Tools Kali
  22. Hack Tools For Pc
  23. Pentest Tools Find Subdomains
  24. Hacker Tool Kit
  25. Hacker Tools Software
  26. Hack Tools For Games
  27. Hacks And Tools
  28. Pentest Tools Find Subdomains
  29. Pentest Tools For Mac
  30. Hack Tools Mac
  31. Hack Tools
  32. Pentest Tools Website Vulnerability
  33. Hacker
  34. Hacker
  35. Pentest Reporting Tools
  36. Hack Tools
  37. Black Hat Hacker Tools
  38. Bluetooth Hacking Tools Kali
  39. Pentest Tools For Ubuntu
  40. Hacker Tool Kit
  41. Hacker Tools 2020
  42. Hacking Tools For Windows Free Download
  43. Hacking Tools Free Download
  44. New Hacker Tools
  45. Pentest Tools Kali Linux
  46. Pentest Tools For Mac
  47. Termux Hacking Tools 2019
  48. Hacking Tools Kit
  49. Best Hacking Tools 2019
  50. Kik Hack Tools
  51. Hack Tools Download
  52. Hacker Search Tools
  53. Hack Tools Download
  54. Hacker Hardware Tools
  55. Pentest Tools Port Scanner
  56. Hack Tools 2019
  57. Blackhat Hacker Tools
  58. Pentest Tools Android
  59. Pentest Tools
  60. Tools Used For Hacking
  61. New Hacker Tools
  62. Tools For Hacker
  63. Hacking Tools Windows 10
  64. Hacker Techniques Tools And Incident Handling
  65. Pentest Tools Android
  66. Hacker Tools 2019
  67. Pentest Tools Open Source
  68. Pentest Tools Alternative
  69. Hak5 Tools
  70. Pentest Tools Github
  71. Pentest Tools List
  72. Hacking Tools Usb
  73. Hacker Techniques Tools And Incident Handling
  74. Pentest Tools Free
  75. Hack App
  76. How To Install Pentest Tools In Ubuntu
  77. Hacking Tools Download
  78. Pentest Tools Url Fuzzer
  79. Pentest Tools Port Scanner
  80. Physical Pentest Tools
  81. Hacker Tools
  82. Hacker Tools For Mac
  83. Hacker Tools 2019
  84. Hacking Tools Mac
  85. Hack Tools For Ubuntu
  86. Best Hacking Tools 2020
  87. Hack Tools Github
  88. Termux Hacking Tools 2019
  89. Hak5 Tools
  90. Hacks And Tools
  91. Hacker Hardware Tools
  92. Pentest Tools Bluekeep
  93. Pentest Reporting Tools
  94. Pentest Tools Kali Linux
  95. Hacker Techniques Tools And Incident Handling
  96. Hack Tools Online
  97. Pentest Tools Port Scanner
  98. Hacking Tools Online
  99. Hacking Tools For Kali Linux
  100. How To Hack
  101. Nsa Hacker Tools
  102. Hacker Tools Windows
  103. Hacker Tools Online
  104. Hack Tools Online
  105. Hack Tools For Games

No comments:

Post a Comment