-
-
Notifications
You must be signed in to change notification settings - Fork 765
Closed
Labels
not vulnerableSomeone has made it very clear that this service is not vulnerable to subdomain takeovers.Someone has made it very clear that this service is not vulnerable to subdomain takeovers.
Description
Service name
Content delivery, simplified (https://www.keycdn.com/).
Documentation
It seems that there is no way to claim dangling CNAME record to kxcdn.com
entry. As record of kxcdn.com has following structure:
<user-provided-input>-<keycdn-user-ID>.kxcdn.com
attacker has only control of the first part of the entry (i.e. <user-provided-input>
) second part is (<keycdn-user-ID>
) is assigned by the KeyCdn during registration.
Metadata
Metadata
Assignees
Labels
not vulnerableSomeone has made it very clear that this service is not vulnerable to subdomain takeovers.Someone has made it very clear that this service is not vulnerable to subdomain takeovers.