Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Subdomain Takeover Possible via Landingi #117

Open
messi96 opened this issue Sep 20, 2019 · 6 comments
Open

Subdomain Takeover Possible via Landingi #117

messi96 opened this issue Sep 20, 2019 · 6 comments
Labels
vulnerable Someone has provided proof in the issue ticket that one can hijack subdomains on this service.

Comments

@messi96
Copy link

messi96 commented Sep 20, 2019

Service name

Landingi

Proof

Landingi is Vulnerable to Subdomain Takeover
If you get an Error Similar to this one

Fingerprint

  1. Create a new account get a free one for 14 days
  2. Create your own template ( landing page ) for the PoC similar to
$ cat aelfjj1or81uegj9ea8z31zro.html
<!-- PoC by username -->
  1. Add the subdomain under Domains in the left pane.
  2. Subdomain gets successfully verified if it is unclaimed or has dangling CNAME records ( cname.landingi.com. )
  3. On the selected landing page click MORE “...” to expand the list of available actions
  4. Select “PUBLISHING OPTIONS” on the dropdown And then “CHANGE URL” if you want to.
  5. Choose your domain from the list and add a path to it if needed.
  6. Save changes & Publish!
  7. Enjoy your leads.

Documentation

https://landingi.com/knowledge-base

Thanks :)

@EdOverflow EdOverflow added the vulnerable Someone has provided proof in the issue ticket that one can hijack subdomains on this service. label May 18, 2020
@0xElmalky
Copy link

Hello Is this case still vulnerable ?

@adityathebe
Copy link

This is an edge case. Needs to be verified manually

image

image

@kcnewb1e
Copy link

image
this is error from landingi to?

@ahmedameenaim
Copy link

@adityathebe Is there a way to bypass it ?

@pdelteil
Copy link
Contributor

pdelteil commented Jun 4, 2021

I confirm is not possible to take over the subdomains.

@Nikhil28-09-04
Copy link

Nikhil28-09-04 commented Sep 17, 2024

Will this be vulnerable?? @pdelteil
Screenshot (74)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
vulnerable Someone has provided proof in the issue ticket that one can hijack subdomains on this service.
Projects
None yet
Development

No branches or pull requests

8 participants