jnv,
@jnv@mastodon.social avatar

I was hit by subdomain takeover through a wildcard DNS entry for GitHub Pages. I'd never know unless the attacker added the subdomain to Google Search Console.
I doubt other affected domain owners are so lucky though…

Screenshot of ftp.vlnas.cz website with something what looks like an ad for online casino.
Screenshot of GitHub profile tete87, with multiple recently created repositories with names of various subdomains.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • DreamBathrooms
  • mdbf
  • InstantRegret
  • Durango
  • Youngstown
  • rosin
  • slotface
  • thenastyranch
  • osvaldo12
  • ngwrru68w68
  • kavyap
  • cisconetworking
  • khanakhh
  • magazineikmin
  • anitta
  • cubers
  • vwfavf
  • modclub
  • everett
  • ethstaker
  • normalnudes
  • tacticalgear
  • tester
  • provamag3
  • GTA5RPClips
  • Leos
  • megavids
  • JUstTest
  • All magazines