Skip to main content

Command Palette

Search for a command to run...

Subdomain Takeover: via Unclaimed CNAME on WordPress

Updated
1 min read
Subdomain Takeover: via Unclaimed CNAME on WordPress

Halo guys, kali ini aku xzyhellsing, mau membahas kerentanan Subdomain Takeover di mana attacker bisa mengambil alih sebuah subdomain yang expired/unactive di Wordpress.com

Steps to Reproduce:

  1. Subdomain yang didukung WordPress, katakanlah contohnya slebew.aweawe.com memiliki service fingerprint seperti ini:,
Error: Active domain connection

Something unexpected happened while accessing this website. It looks like it doesn’t have an active domain connection upgrade to link the requested domain name to the WordPress.com site.

If this is your domain name and it has recently stopped working, it's possible that your plan or domain may have expired. Please log in to your WordPress.com account and review the status of your plan and domain.
  1. Selanjut nya masuk ke akun WordPress ke url ini: https://wordpress.com/start/domains/use-your-domain,

  2. Hubungkan subdomain slebew.aweawe.com dengan membayar biaya langganan yang bisa connect domain.,

  3. Setelah berhasil menghubungkan subdomain yang vulnerable, silahkan untuk menghost proof of concept nya contoh nya seperti ini : slebew.aweawe.com/namakalian.html,

Impact: Pengambilalihan subdomain yang disalahgunakan untuk beberapa tujuan:

  • Distribusi malware.

  • Phishing / Spear phishing.

  • XSS.

Useful Resource/Reference:

Semoga bermanfaat, Happy hunting 😎

More from this blog

B

BountyProofs | Bug Bounty Writeups & Free Tools

37 posts

Explore real-world bug bounty proofs of concept. Learn how ethical hackers find and exploit security flaws across platforms.