Credential Access
High
- Category
- Privilege Escalation
- Content
| Dynadot | Public API (`api.dynadot.com`) | `dynadot.com` | API key | Good fit for scripted portfolio operations | | Porkbun | Public JSON API (`porkbun.com/api/json/v3`) | `porkbun.com` | API key + secret | API-first for registration and DNS operations | | Name.com | Public REST API (`api.name.com`) | `name.com` | API token / basic auth | Supports registration, transfer, and DNS workflows | | Gandi | Public v5 API (`api.gandi.net`) | `gandi.net` | Personal access token | EU-focused registrar with API coverage | | OVHcloud Domains | Public API (`api.ovh.com`) | `www.ovh.com/manager` | API key + app key + app secret | Strong regional support and signed API pattern | | OpenSRS / Enom | Reseller APIs (`api.opensrs.com`, provider-specific endpoints) | Reseller panels | Reseller credentials | Useful for agencies and wholesale portfolios |
- Confidence
- 70% confidence
- Finding
- Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.
