findmytakeover - find dangling domains in a multi cloud environment

By Aniruddha Biyani on 18 Apr 2024 @ Blackhat : Arsenal
πŸ’» Source Code πŸ”— Link
#dns #cloud-workload-protection #cloud-pentesting #security-tools
Focus Areas: ☁️ Cloud Security , βš™οΈ DevSecOps , 🌐 Network Security
This tool demo covers following tools where the speaker has contributed or authored
FINDMYTAKEOVER

Abstract

findmytakeover detects dangling DNS record in a multi cloud environment. It does this by scanning all the DNS zones and the infrastructure present within the configured cloud service provider either in a single account or multiple accounts and finding the DNS record for which the infrastructure behind it does not exist anymore rather than using wordlist or bruteforcing DNS servers.