Web Hacking Expert - Full-Stack Exploitation Mastery - Subdomain Takeover – Part 2

Web Hacking Expert - Full-Stack Exploitation Mastery - Subdomain Takeover – Part 2

Assessment

Interactive Video

Information Technology (IT), Architecture

University

Hard

Created by

Quizizz Content

FREE Resource

The video tutorial explains the process of subdomain takeover using a case study. It begins with detecting a subdomain, blog.abcd.local, and explores whether it can be taken over. The instructor uses the dig tool to gather information, discovering that the subdomain points to a non-existent third-party service. By claiming the subdomain on the service, the instructor demonstrates how to map it to a controlled site, effectively taking over the subdomain. The tutorial concludes with a discussion on the practical implications of subdomain takeover.

Read more

5 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What is the initial step taken by the speaker to explore the subdomain blog.abcd.local?

Ignoring the subdomain

Visiting the subdomain directly

Contacting the domain owner

Using a tool to gather information

2.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which tool does the speaker use to find more information about the subdomain?

Dig

Nslookup

Traceroute

Ping

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What does the speaker discover about the subdomain blogabcd.local?

It is hosted on a private server

It is a secure subdomain

It points to a non-existent service

It is already claimed by another user

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

How does the speaker manage to take over the subdomain?

By contacting the hosting provider

By mapping it to a controlled site

By purchasing the domain

By hacking into the server

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What is the final outcome of the subdomain takeover process?

The subdomain remains unclaimed

The subdomain is secured by the original owner

The subdomain is controlled by the speaker

The subdomain is deleted