Major US Universities' Subdomains Hijacked for Porn and Scam Sites
Researcher Alex Shakhov discovers hundreds of subdomains for 34+ universities being abused due to uncleaned DNS records
L'essentiel
- Cybersecurity researcher Alex Shakhov found that subdomains for UC Berkeley, Columbia University, and Washington University in St.
- Louis are serving explicit porn and scam content after scammers exploited dangling CNAME records.
- The vulnerability allows attackers to register expired subdomain names, leveraging university reputations to appear in Google search results.
Résumé généré par IA
Cybersecurity researcher Alex Shakhov found that subdomains for UC Berkeley, Columbia University, and Washington University in St. Louis are serving explicit porn and scam content after scammers exploited dangling CNAME records. The vulnerability allows attackers to register expired subdomain names, leveraging university reputations to appear in Google search results. Hundreds of subdomains across at least 34 universities are affected.







