1
mirror of https://github.com/jakejarvis/subtake.git synced 2025-04-26 12:06:12 -04:00

Update README.md

This commit is contained in:
Jake Jarvis 2018-11-17 11:52:42 -05:00
parent 881b6426ed
commit 0ee81667f1
No known key found for this signature in database
GPG Key ID: D36CB66F4002B25B

View File

@ -38,6 +38,32 @@ Requires [Go](https://golang.org/dl/).
- A great explanation of the risks of takeovers and steps to responsibly disclose takeovers to companies: https://0xpatrik.com/subdomain-takeover/
- A comprehensive list of what services are vulnerable and how to proceed once finding them: https://github.com/EdOverflow/can-i-take-over-xyz
## Services Checked
- Amazon S3
- ~~Amazon CloudFront~~ [(no longer vulnerable?)](https://github.com/EdOverflow/can-i-take-over-xyz/issues/29)
- Microsoft Azure
- Heroku
- GitHub Pages
- Fastly
- Pantheon.io
- Shopify
- Tumblr
- WordPress.com
- Ghost
- Surge
- Statuspage
- Bitbucket Pages
- UserVoice
- Zendesk
- Brightcove
- Big Cartel
- Acquia
- ReadMe.io
- MaxCDN
- Apigee
- Smugmug
## To-Do
- Integrate `sonar.sh` into the main Go script as an option instead of input file.