indianajson / can-i-take-over-dns

"Can I take over DNS?" — a list of DNS providers and how to claim (sub)domains via missing hosted zones

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

000Domains

indianajson opened this issue · comments

Service 000Domains

Status Vulnerable

Nameserver

ns1.000domains.com
ns2.000domains.com
fwns1.000domains.com
fwns2.000domains.com

Explanation

000Domains is owned by Dotster, powered by Domain.com, which means creating a zone on Domain.com also creates a zone on Dotster and 000Domains (and vice versa). For example, 4orty3.net uses Dotster's DNS, however ns1.domain.com and ns1.000domains.com will resolve all records for 4orty3.net.

Per Domain.com's Knowledge Base you can add external domains if you have an existing account (you can purchase something then cancel to get an account).

To perform a takeover on 000Domains, get an account on Domain.com and add the zones there (which will activate the zone on 000Domains).

ns0-1.domaincontrol.com dns can takeover?

ns0-1.domaincontrol.com dns can takeover?

@abusabiha "domaincontrol.com" is GoDaddy and not vulnerable.