nuclei-templates/dns/spoofable-spf-records-ptr.yaml

25 lines
582 B
YAML
Raw Normal View History

2020-11-11 21:27:34 +00:00
id: spoofable-spf-records-ptr
info:
name: Spoofable SPF Records with PTR Mechanism
2020-11-11 21:27:34 +00:00
author: binaryfigments
severity: info
description: SPF records in DNS containing a PTR mechanism are spoofable.
reference:
- https://www.digitalocean.com/community/tutorials/how-to-use-an-spf-record-to-prevent-spoofing-improve-e-mail-reliability
classification:
cwe-id: CWE-200
tags: dns,spf
metadata:
max-request: 1
2020-11-11 21:27:34 +00:00
dns:
- name: "{{FQDN}}"
type: TXT
2020-11-11 21:27:34 +00:00
matchers:
- type: word
words:
- "v=spf1"
- " ptr "
2023-07-06 05:54:47 +00:00
condition: and