• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar

LinuxSec Exploit

Nothing is Ever Locked

  • XSS Payloads
  • About Us

Uptimerobot.com Custom Domain or Subdomain Takeover

September 24, 2018 by Jack Wilder 6 Comments

Uptimerobot.com Custom Domain or Subdomain Takeover – Oke kali ini saya akan membahas kemungkinan melakukan takeover pada laman uptimerobot.com. Uptimerobot.com adalah layanan untuk menampilkan status uptime dari layanan yang kita punya. Sebagai contoh mungkin bisa dilihat di status.linuxsec.org. Yep, laman untuk menampilkan status uptime dari server kita. Nah, layanan ini sendiri bisa digunakan secara gratis maupun berbayar (versi premium).

Public Status Page untuk Uptimerobot.com pun bisa digunakan untuk domain kustom. Syaratnya dengan menambahkan CNAME yang diarahkan ke stats.uptimerobot.com.

nah jika suatu saat pemilik dari custom domain tersebut menghapus Public Status Page nya namun tidak menghapus record CNAME di domain amanger, subdomain tersebut bisa kita takeover. Sebagai contoh disini saya test di uptime.zafkiel.net . uptime.zafkiel.net mengarah ke stats.uptimerobot.com naum tidak ada public status page yang dibuat.

yuyudhn@LINUXSEC:~$ curl https://uptime.zafkiel.net/
page not found
yuyudhn@LINUXSEC:~$ curl -I https://uptime.zafkiel.net
HTTP/2 404
content-type: text/html; charset=utf-8
date: Mon, 24 Sep 2018 10:34:14 GMT
etag: W/"e-d2v0Cs2NwwmTXQ8pOCI5YoIXuhc"
server: Caddy
strict-transport-security: max-age=31536000; includeSubDomains
vary: Accept-Encoding
...

Lalu test dengan perintah dig

yuyudhn@LINUXSEC:~$ dig uptime.zafkiel.net
....
uptime.zafkiel.net.     215     IN      CNAME   stats.uptimerobot.com.
stats.uptimerobot.com.  215     IN      A       69.162.67.141

Oke langkah yang bisa kita ambil adalah mendaftarkan public status page untuk custom domain tersebut.

Cek uptime.zafkiel.net

Oke sekian tutorial kali ini dan semoga bermanfaat.

Filed Under: Domain Takeover, Web Hacking

Reader Interactions

Comments

  1. mizbaul says

    September 21, 2022 at 3:37 am

    need help

    Reply
  2. hehe says

    March 12, 2023 at 3:14 pm

    myre

    Reply
  3. aquaticclaim says

    April 10, 2023 at 4:11 pm

    Your blog postings are well-structured and easy to navigate, and they always contain the data I’m looking for soccer random

    Reply
  4. roy says

    June 27, 2023 at 12:16 pm

    it’s paid feature

    Reply
  5. lily167 says

    November 2, 2023 at 1:40 pm

    I have no words to express my gratitude for this post….I am truly impressed by this post…the author of this post was an exceptional individual.Thank you for revealing this to us.We appreciate your willingness to share information with us. gacha life

    Reply
  6. Rwees says

    December 4, 2023 at 3:26 pm

    I assumed Johnson handled the process, and I was relieved to finally be able to put a face and a name to the clerk’s backrooms game office.

    Reply

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Popular Post

Surge.sh Custom Domain or Subdomain Takeover

Laravel PHPUnit Remote Code Execution

Exploit Drupal Core 7.x Auto SQL Injection dan Upload Shell

Hack Targeted Website using Reverse IP

FastMail Custom Domain or Subdomain Takeover

Uptimerobot.com Custom Domain or Subdomain Takeover

MIME Type Sniffing pada Form Upload Gambar

Cara Mendapatkan RDP Gratis Dengan Shell Windows

WordPress Plugin CopySafe PDF Protection Shell Upload

Cara Mudah Hack cPanel dengan Fitur Reset Password

LinuxSec / 12 queries in 0.13 seconds