Readme.io proofs #41
Labels
vulnerable
Someone has provided proof in the issue ticket that one can hijack subdomains on this service.
Content-Length: 217167 | pFad | https://github.com/EdOverflow/can-i-take-over-xyz/issues/41
1FFetched URL: https://github.com/EdOverflow/can-i-take-over-xyz/issues/41
Alternative Proxies:
Service name
Readme.io (https://readme.io/)
Proof
The subdomains reside on
*.readme.io
. It is a classic virtual hosting scenario like in other similar services.To verify whether subdomain takeover may be possible, run:
(Assuming you have Readme.io account created.)
Documentation
https://readme.readme.io/docs/setting-up-custom-domain
The text was updated successfully, but these errors were encountered: