DcentWallet/dcent-provider

Subdomain takeover vulnerablity

Amanzv opened this issue · 1 comments

I tried contacting you with the mail address but it has been longer than expected to you to respond as the domain iotrust.dcentwallet.com is vulnerable to GitHub subdomain takeover attackers can host malicious content there & also can host a phishing campaign on it I have made a proof of concept over the site kindly check & remove the CNAME pointing to GitHub or ask me to release the domain & takeover it

If possible kindly check the mail
Best,
Amannoobda

resolved