Skip to content

Commit

Permalink
Update kat_finding_types.json
Browse files Browse the repository at this point in the history
  • Loading branch information
underdarknl authored Jan 10, 2025
1 parent aa160a8 commit 0d1b3ea
Showing 1 changed file with 7 additions and 0 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -426,6 +426,13 @@
"impact": "Various recipient mailservers might not perform all requested lookups and bounce email because of missed allowed addresses, or bounce mail entirely due to too many dns lookups.",
"recommendation": "Consolidate the SPF record, remove unneeded lookups and mechanisms."
},
"KAT-DEPRECATED-SPF-MECHANISM": {
"description": "This SPF record contains a deprecated SPF mechanism.",
"source": "https://www.rfc-editor.org/rfc/rfc7208#section-5.5",
"risk": "low",
"impact": "Deprecated mechanism is used. It should not be used.",
"recommendation": "Fix the SPF record, remove deprecated mechanisms."
},
"SUB-DOMAIN-TAKEOVER": {
"description": "Subdomain takeover is when an attacker takes control of an unused or improperly configured subdomain, potentially accessing sensitive information or conducting phishing attacks.",
"source": "https://developer.mozilla.org/en-US/docs/Web/Security/Subdomain_takeovers",
Expand Down

0 comments on commit 0d1b3ea

Please sign in to comment.