You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
First, thanks voor the great software!
Yesterday I found out that apparently a lot of TLD registrars (or probably one registrar which manages a lot of TLD's) now resolve anything which hasn't been registered to a catch-all website. This is probably to drive sales. It would be great if there was an option to filter those out, since they are no security risk. Best cause of action would probably be to repeat the query with a long random string to the same TLD and see if it responds with the same IP-address?
best regards,
Ewald.
The text was updated successfully, but these errors were encountered:
Sure, here is a link for surffiets.nl to the CIRCL website which uses ail-typo-squatting: https://typosquatting-finder.circl.lu/7406bc36-38d4-4066-aad8-3ca2643da652
the catch-all resolving queries are in the wrongTLD and addTLD. For instance with the .ph .kids .ws .nl.ac TLD's.
It is of course possible to not use those checks, but then there is the risk of missing registered domains which could pose a threat.
First, thanks voor the great software!
Yesterday I found out that apparently a lot of TLD registrars (or probably one registrar which manages a lot of TLD's) now resolve anything which hasn't been registered to a catch-all website. This is probably to drive sales. It would be great if there was an option to filter those out, since they are no security risk. Best cause of action would probably be to repeat the query with a long random string to the same TLD and see if it responds with the same IP-address?
best regards,
Ewald.
The text was updated successfully, but these errors were encountered: