logoalt Hacker News

Kwpolskayesterday at 6:16 PM2 repliesview on HN

What if you have a wildcard cert for *.example.com?


Replies

jamesfinlaysontoday at 12:27 AM

I worked at a company where the security team disliked wildcard certificates because it exposed us to the risk of someone, somehow, hosting something malicious on a subdomain.

andixyesterday at 6:22 PM

Much better. But you still leave traces from dns queries.

Subfinder has a lot of sources to find subdomains, not only certs: https://github.com/projectdiscovery/subfinder