⚠️ Subdomain Takeover - Security Research PoC

Proof of Concept for Responsible Disclosure
This page demonstrates a subdomain takeover vulnerability. No data is exfiltrated.

Vulnerability Details

🍪 Cookie Access Demonstration

This subdomain can read cookies scoped to .mfaservices.nl

⚠️ If cookies appear, it proves session hijacking is possible via this takeover.

Impact Assessment:

Remediation

  1. Remove the dangling CNAME record from DNS
  2. Or reclaim the Azure public IP resource
  3. Audit all DNS records for similar issues
  4. Review cookie scope settings (avoid Domain=.mfaservices.nl)

Responsible Disclosure

This vulnerability is being reported through proper channels to the domain owner.

Researcher: Smaran Chand (@smaranchand)

Timestamp: