You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Current Behavior: Nuclei currently indicates that a domain is vulnerable to GitHub Pages takeover.
Expected Behavior: However, after researching GitHub's updated policy, I found that the domain cannot be taken over due to the new requirement for domain verification through DNS TXT records.
Steps To Reproduce:
Run nuclei (subDomains contain list of subdomains)-
nuclei -l subDomains -t ~/nuclei-templates/http/takeovers -rl 40
Hello, the response time for this issue was longer than usual because the team was traveling for DEFCON. The team will respond to this issue shortly. Thank you for your contribution
Nuclei version: v3.3.0
Nuclei command: nuclei -l subDomains -t ~/nuclei-templates/http/takeovers -rl 40
Current Behavior: Nuclei currently indicates that a domain is vulnerable to GitHub Pages takeover.
Expected Behavior: However, after researching GitHub's updated policy, I found that the domain cannot be taken over due to the new requirement for domain verification through DNS TXT records.
Steps To Reproduce:
nuclei -l subDomains -t ~/nuclei-templates/http/takeovers -rl 40
[github-takeover] [http] [high] https://giant.particle.io
Anything else: https://docs.github.com/en/pages/configuring-a-custom-domain-for-your-github-pages-site/verifying-your-custom-domain-for-github-pages
The text was updated successfully, but these errors were encountered: