Whonow Logo

Whonow

A malicious DNS server that executes DNS Rebinding attacks on-demand to bypass same-origin policy restrictions and access internal network resources.

654
Security Operations
Free
Visit website
0

Whonow Description

Whonow is a malicious DNS server designed to execute DNS Rebinding attacks in real-time. The tool operates as a specialized DNS server that facilitates DNS rebinding attacks by manipulating DNS responses to bypass same-origin policy restrictions in web browsers. DNS rebinding attacks allow attackers to access internal network resources and services that would normally be protected by network boundaries. The server can be deployed to respond to DNS queries with crafted responses that enable the rebinding attack vector. This technique is commonly used in penetration testing and security research to demonstrate vulnerabilities in network configurations and web application security models. A public instance of the tool is available at rebind.network:53 for testing and demonstration purposes. The tool provides an on-demand approach to DNS rebinding, allowing security professionals to execute these attacks without requiring extensive setup or configuration.

FEATURED

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

NordVPN Logo

VPN service providing encrypted internet connections and privacy protection

Mandos Fractional CISO Services Logo

Fractional CISO services for B2B companies to accelerate sales and compliance

Stay Updated with Mandos Brief

Get the latest cybersecurity updates in your inbox

POPULAR

RoboShadow Logo

Automated vulnerability assessment and remediation platform

10
TestSavantAI Logo

Security platform that provides protection, monitoring and governance for enterprise generative AI applications and LLMs against various threats including prompt injection and data poisoning.

5
Cybersec Feeds Logo

A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.

5
Fabric Platform by BlackStork Logo

Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.

5
Mandos Brief Newsletter Logo

A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

5
View Popular Tools →