Broken Link Injection
Some websites that check broken links to find broken link-hijacking vulnerabilities
1- https://ahrefs.com/broken-link-checker
Steps
Manually find and click external links on the target site ( For Example:- Some Links to Social Media Accounts or Some external Media Link)
While Doing Manual work also put broken-link-checker in background using below Command interminal.
blc -rof --filter-level 3 https://example.com/
Ouput will be like Something.
─BROKEN─ https://www.linkedin.com/company/ACME-inc-/ (HTTP_999)
Now you need to check if company has the page or not , if no then register as the company or try to get that username or url.
Alternate Step
Input the domain name
Reference
Impact
Content Hijacking Information Leakage Phishing Attacks stored xss Impersonation Damage the company’s reputation
Last updated