NSBrute is a Python utility designed to identify and exploit domains vulnerable to AWS NS (Name Server) takeover attacks. The tool automates the process of discovering misconfigured DNS settings where domain name servers point to AWS resources that are no longer active or properly configured. This creates an opportunity for attackers to register the abandoned AWS resources and gain control over the domain's DNS resolution. NSBrute operates by scanning target domains and checking for vulnerable NS configurations that could allow unauthorized takeover of DNS control. The utility focuses specifically on AWS-hosted name servers that may have been decommissioned or improperly configured, leaving domains susceptible to subdomain takeover attacks. The tool is implemented in Python and provides functionality for security researchers and penetration testers to assess domain configurations for potential NS takeover vulnerabilities in AWS environments.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Kali Linux is a specialized Linux distribution for cybersecurity professionals, focusing on penetration testing and security auditing.
SharpShares efficiently enumerates and maps network shares and resolves names within a domain.
SauronEye helps in identifying files containing sensitive data such as passwords through targeted directory searches.
AHHHZURE is an automated deployment script that creates vulnerable Azure cloud lab environments for offensive security training and cloud penetration testing practice.
PyBOF is a Python library that enables in-memory loading and execution of Beacon Object Files (BOFs) with support for argument passing and function targeting.
A CVE compliant archive of public exploits and corresponding vulnerable software, and a categorized index of Internet search engine queries designed to uncover sensitive information.
BeEF is a specialized penetration testing tool for exploiting web browser vulnerabilities to assess security.
SharpPrinter enables efficient discovery of network printers for security and management purposes.
Advanced command and control tool for red teaming and adversary simulation with extensive features and evasion capabilities.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.