-
Notifications
You must be signed in to change notification settings - Fork 65
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Many Hijacked Subdomains #740
Comments
Do you have examples? |
The "Proofs" @ https://github.com/EdOverflow/can-i-take-over-xyz/issues are the best I can point to. As those issues state, it's quite difficult to list or mitigate such domains. |
It describes a domain hijacking scenario. How should a DNS server prevent this from happening? |
Prevent, no. Detect & block such hijacked domains from access, maybe? |
In any case, it's the wrong repository. |
@Alex-302 Would you mind having this issue moved there, please? |
Prerequisites
Problem description
N.B.: Reposting AdguardTeam/AdGuardSDNSFilter#572 from 3ya (!) for increased visibility.
According to another in a long-term series of articles, various subdomains of a number of Microsoft-owned domains have been hijacked.
Seizing subdomains. How I took over Microsoft subdomains and how to perform such attacks → https://github.com/EdOverflow/can-i-take-over-xyz has quite a lot of details re: & especially combatting this. Some of the problem involves CNAME hacking.
Hard lists of such seem difficult to find, but https://www.google.com/search?q=hijacked%20microsoft%20domains seems to give more pieces to the puzzle. (Perhaps whenever DNSSEC is widely deployed this'll no longer be an issue.)
Proposed solution
🤷🏾♂️ I'm hoping you experts can come up w/ a good solution.
Additional information
Thanks to @DandelionSprout for reminding me to followup on this.
The text was updated successfully, but these errors were encountered: