nuclei-templates/http/takeovers/webflow-takeover.yaml

33 lines
984 B
YAML

id: webflow-takeover
info:
name: webflow takeover detection
author: pdteam,keni0k
severity: high
reference:
- https://github.com/EdOverflow/can-i-take-over-xyz/issues/44
- https://saurabhsanmane.medium.com/subdomain-takeover-using-webflow-service-5a7b9efcf172
metadata:
max-request: 1
tags: takeover
http:
- method: GET
path:
- "{{BaseURL}}"
matchers-condition: and
matchers:
- type: dsl
dsl:
- Host != ip
- type: word
words:
- "The page you are looking for doesn't exist or has been moved."
- "The page you are looking for doesn't exist or has been moved"
- <p class="description">The page you are looking for doesn't exist or has been moved.</p>
condition: or
# digest: 490a0046304402204bfb1a738886aedcb3f3352ceb4b0107f06f493d2e7f0d6eae876478d5330480022016590b1b9caae2367b5799a7a422532aa4939b68b9758152817ab532d0384f48:922c64590222798bb761d5b6d8e72950