[Owasp-o2-platform] Custom O2 Platform GUI for OWASP WebScarab

dinis cruz dinis.cruz at owasp.org
Mon Oct 18 14:06:11 EDT 2010


Hi WebScarab community

Since you are probably the most interested in these capabilities, I would
like to call your attention  to the latest version of the O2
Platform<http://www.o2platform.com/>
which has support for OWASP's
WebScarb<http://www.owasp.org/index.php/WebScarab>via a Custom O2 GUI
that exposes a number of WebScarab's funcionality and
allows its easy scripting and automation.

Here are the main features:

   - Install and uninstall WebScarab
   - Multiple Gui Automations
      - Switch Interface Modes (from "Advanced -> Lite" and
      "Lite->Advanced")
      - Save current Conversations
      - Load previously saved Conversations
   - IE Automation via dynamically compiled O2 Scripts (allowing the
   workflow where a dynamic script is executed by IE and the traffic captured
   by WebScarab)
   - Load and filter saved conversations
      - as a SQL-like dynamic query - and then using an GUI that allows the
      real-time execution of .NET LINQ Queries)
      - as O2Findings (via a special WebScarab->O2Findings converter)  - and
      then using O2 powerful Findings Filtering capabilities

For more details about this Custom O2 Tool/Script see:

   - Wiki Page: http://www.o2platform.com/index.php/O2 Script/OWASP
   WebScarab (Custom O2
version).h2<http://www.o2platform.com/index.php/O2%20Script/OWASP%20WebScarab%20%28Custom%20O2%20version%29.h2>
   - YouTube video: http://www.youtube.com/watch?v=DIwbtk5cAH0

If you ever had the need to automate WebScarab capabilities or perform
advanced analysis on the saved data, you should find this new Custom O2
quite powerful.

*Request for help:* The current video doesn't really give good justice to
the available capabilities. So if you have some cycles I would like help to
create a number of new videos and to write a couple WebScarab specific
scripts + Unit Tests (maybe on top of WebGoat or another vulnerable webapp)

Let me know what you think.

Dinis Cruz

Blog: http://diniscruz.blogspot.com
Twitter: http://twitter.com/DinisCruz
Web: http://www.owasp.org/index.php/O2
-------------- next part --------------
An HTML attachment was scrubbed...
URL: https://lists.owasp.org/pipermail/owasp-o2-platform/attachments/20101018/9e21b606/attachment.html 


More information about the Owasp-o2-platform mailing list