Subdomain Takeover Vulnerability - Proof of Concept
SECURITY RESEARCH DEMONSTRATION ONLY
This is a SECURITY DEMONSTRATION ONLY for responsible disclosure purposes.
Target Vulnerability: help.swisspost.ch
Researcher: pentester1 (YesWeHack)
Date: February 4, 2026
Purpose: To demonstrate a verified vulnerability without exploitation.
The subdomain help.swisspost.ch is vulnerable to takeover due to a dangling CNAME record pointing to a deleted Vercel deployment.
Current Record:
Status: VULNERABLE
Vercel Deployment: 404 (Deleted)
Cached Response: 301 Redirect
Risk Level: HIGH
When cache expires: Complete takeover possible
This page shows what could be deployed on the vulnerable subdomain. The identical DNS configuration has been reproduced here to prove the vulnerability exists.
Key Difference: This uses a researcher-owned domain (hackerbughunter.online) instead of exploiting Swiss Post's domain.