low

Subdomain takeover via Azure Traffic Manager

Published Mon, Oct 8th, 2018
Platforms

Summary

Patrick Hudak demonstrated possible subdomain takeover using the Traffic Manager in Azure.

Affected Services

Traffic Manager

Remediation

Review your DNS zones and identify CNAME records that are dangling or have been taken over. For further recommendations, review Microsoft's article on subdomain takeovers (linked in references).

Tracked CVEs

No tracked CVEs

References

Disclosure Date
Mon, Oct 8th, 2018
Exploitablity Period
ongoing
Known ITW Exploitation
-
Detection Methods
-
Discovered by
Patrick Hudak, null