Anubis icon indicating copy to clipboard operation
Anubis copied to clipboard

Retrieving CSRF Token for DNSDumpster Fails During Subdomain Enumeration

Open Son0fSun opened this issue 10 months ago • 0 comments

Description

I'm encountering an error when running anubis -t reddit.com: "Retrieving CSRF Token for DNSDumpster failed". The tool still finds subdomains, but this error occurs during the DNSDumpster search.

Environment

  • OS: WSL on Windows/Mac
  • Python version: 3.13
  • Anubis-netsec version: 1.3.1

Command

anubis -t reddit.com

Output

         d8888                   888      d8b
        d88888                   888      Y8P
       d88P888                   888
      d88P 888 88888b.  888  888 88888b.  888 .d8888b
     d88P  888 888 "88b 888  888 888 "88b 888 88K
    d88P   888 888  888 888  888 888  888 888 "Y8888b.
   d8888888888 888  888 Y88b 888 888 d88P 888      X88
  d88P     888 888  888  "Y88888 88888P"  888  88888P'

Searching for subdomains for 151.101.129.140 (reddit.com)
Working on target: reddit.com
Testing for zone transfers
Searching HackerTarget
Searching for Subject Alt Names
Searching NetCraft.com
Searching HudsonRock
Searching crt.sh
Searching DNSDumpster
Searching Anubis-DB
Retrieving CSRF Token for DNSDumpster failed
Found 20 subdomains
----------------
tls-test-2.reddit.com
tls-test-1.reddit.com
pay.reddit.com
mx-03.reddit.com
mail-p236.reddit.com
vip.reddit.com
ads-api.reddit.com
reddit.com
www.business.reddit.com
pixel.reddit.com
ads.reddit.com
h.reddit.com
m.reddit.com
mx-02.reddit.com
*.reddit.com
amp.reddit.com
business.reddit.com
alb.reddit.com
addons.reddit.com
developers.reddit.com
Subdomain search took 0:00:05.283

Steps to Reproduce

  1. Activate the virtual environment (source /home/rabite/venv/Anubis/bin/activate).
  2. Run anubis -t reddit.com.
  3. Observe the error "Retrieving CSRF Token for DNSDumpster failed".

Expected Behavior

No errors during subdomain enumeration.

Actual Behavior

Error: "Retrieving CSRF Token for DNSDumpster failed".

Additional Context

  • Running in WSL.
  • No API keys configured for DNSDumpster (if required).

Son0fSun avatar Mar 17 '25 11:03 Son0fSun