DoD Hunters


  • This topic has 2 replies, 2 voices, and was last updated 9 months ago by Max.
Viewing 3 posts - 1 through 3 (of 3 total)
  • Author
  • Max

    Hi all,
    just wanted to start the forum a bit.

    I would love to do some recon together and
    share some domains to hunt on for the dod.
    Are you up to this?
    We could create a shared list of domains, directories, techstack etc.

    Gal Nagli

    I found a lot of XSS in the past on the DoD domains which doesn’t end in “.mil”, I would check those.


    I also noticed that the DoD has a really mixed and old tech stack.
    But a google dork like site:*.mil with ext:jsf or jsp works great to find some outdated Java servlets.

Viewing 3 posts - 1 through 3 (of 3 total)
  • You must be logged in to reply to this topic.

Ready to join the community?

Better Together, we are waiting for you!