BOOK THIS SPACE FOR AD
ARTICLE ADHey all, My name is Rejinold Pearson. Today in this section we are gonna be doing Subdomain Takeover on Real Websites using Google. So without any further do, lets get started.
STEPS:
Go to this repo on GitHub https://github.com/EdOverflow/can-i-take-over-xyzNow for the purpose of demonstration I’m gonna choose Kinsta engine which have the fingerprint “No site for domain”3. I’m gonna use my google dork which works really fantastic. Trust me you are gonna find a plethora of subdomain takeover using this dork.
site:*.*.no intext:”No Site For Domain”
I used *.*.no but you can use anything like “.com”, “.org”, “.io” or any country. It doesn’t really matter.
4. Now lets check the results. Seem like we got a hit.
5. Lets check the site…
Voila! we have successfully found a subdomain takeover vulnerability. So, this is how you can find subdomain takeover vulnerability very easily using my google dork technique. Hopefully, you enjoyed it. Happy hacking : )