Collected research
Insecurity through Censorship: Vulnerabilities Caused by The Great Firewall
Queries answered by a nameserver in China get forged A records whenever a blacklisted keyword such as webproxy.id appears anywhere in the name, even for domains that do not exist, and the answers come from a small pool of unrelated real IPs. That turns any subdomain of the victim into a takeover: claim *.victim.tld on Fastly, point it at your own origin, and loop images over generated poisoned names until one lands there; a poisoned IP running old cPanel gives XSS instead.
Record
- Researcher
- Shubham Shah
- Published by
- assetnote.io
- Topic
- Other
In the archive
Related sources
Tags
This page is the archive's own catalogue record. The research is the work of Shubham Shah, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .