nuclei-templates/http/takeovers/gohire-takeover.yaml

37 lines
857 B
YAML
Raw Permalink Normal View History

id: gohire-takeover
info:
2024-04-15 04:53:12 +00:00
name: GoHire Takeover Detection
author: philippedelteil
2024-04-15 04:53:12 +00:00
severity: high
reference:
- https://github.com/EdOverflow/can-i-take-over-xyz/issues/403
metadata:
max-request: 1
tags: takeover,gohire
2024-04-15 04:53:12 +00:00
http:
- method: GET
path:
- "{{BaseURL}}"
2024-04-15 04:53:12 +00:00
matchers-condition: and
matchers:
2024-04-15 04:53:12 +00:00
- type: dsl
dsl:
- Host != ip
- type: word
2024-04-15 04:53:12 +00:00
part: body
words:
2024-04-15 04:53:12 +00:00
- 'You may have followed an invalid link or the job you are looking for has been archived'
- type: status
status:
- 404
2024-07-10 11:31:30 +00:00
extractors:
- type: dsl
dsl:
- cname
# digest: 490a00463044022075bc75ceacf2c4fcf2ee2a3f45c68293414cb79afdefc2b68a040c1fc39b4fb40220637462e31cb129a25abc0c88e2c21c4b7798c34117c08c73ce475af28474cd3b:922c64590222798bb761d5b6d8e72950