BadDNS is an open-source Python tool for detecting domain and subdomain takeovers. It distinguishes itself by not only identifying takeover opportunities in CNAME, NS, and MX records but also by inspecting client-side references and CSP/CORS headers for vulnerabilities. Additionally, it automates the update of takeover signatures from reputable sources, ensuring users stay protected against the latest threats. BadDNS is available for free on GitHub, with future developments planned to include support for additional DNS record types and DNSSEC vulnerabilities.

3m read timeFrom helpnetsecurity.com
Post cover image
Table of contents
BadDNS modulesFeaturesFuture plans and download

Sort: