Subdomain Takeover | Github Based

Hello, Today I will Show You, How to Takeover A Subdomain, This POC is based on Subdomain Takeover Via Github.

The Domain Is Showing Us a 404 Github Page Error, Which Means The CNAME is indicating to a GitHub repository that does not exist, so what if we make that repository in our name?

that's all you claimed the subdomain :)

Just follow Step

Steps:

1- Check website error (404 Github Page Error)

2- Check CNAME (https://toolbox.googleapps.com/apps/dig/#CNAME/)

3- Create a Github Repo Same As The CNAME

4- Push files in that Repository.

5- Go to settings and in Github pages section choose Master / Main branch

6- Add the Custom Domain Name

--

--

Abhinav Porwal

Cyber Security Researcher | Digital Marketer | Web Developer | Penetration Tester | CTF Player