Create gitbook-takeover.yaml (#3707)

* Create gitbook-takeover.yaml

* Update gitbook-takeover.yaml

* added missing and condition

Co-authored-by: Sandeep Singh <sandeep@projectdiscovery.io>
patch-1
Philippe Delteil 2022-02-15 13:30:07 -05:00 committed by GitHub
parent 7bf3ac584c
commit f2705ea61f
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 21 additions and 0 deletions

View File

@ -0,0 +1,21 @@
id: gitbook-takeover
info:
name: gitbook takeover detection
author: philippedelteil
severity: high
tags: takeover,gitbook
reference:
- https://github.com/EdOverflow/can-i-take-over-xyz/issues/259
- https://hackerone.com/reports/223625
requests:
- method: GET
path:
- "{{BaseURL}}"
matchers:
- type: word
words:
- "If you need specifics, here's the error"
- "Domain not found"
condition: and