[Owasp-switzerland] Firefox Extensions

Sven Vetsch / Disenchant sven.vetsch at disenchant.ch
Sat Nov 11 08:42:19 EST 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi list members,
as you know today was the Kickoff-Meeting of the OWASP Switzerland Local
Chapter. I really think it was a good start :)

As I said at the meeting, I'll send you a list of the Firefox Extensions
I'm using for auditing webapplications and security related stuff. So
here it is:

Add & Edit Cookies - Cookies Editor:
http://addneditcookies.mozdev.org/

cookieculler:
http://cookieculler.mozdev.org/

DOM Inspector:
http://www.mozilla.org/projects/inspector/

greasemonkey:
http://greasemonkey.mozdev.org/

XForms Buddy:
http://beaufour.dk/index.php?sec=misc&pagename=xforms

Web Developer Extension:
http://chrispederick.com/work/webdeveloper/

User Agent Switcher Extension:
http://chrispederick.com/work/useragentswitcher/

tamperdata:
http://tamperdata.mozdev.org/

LiveHTTPHeaders:
http://livehttpheaders.mozdev.org/


So, that's it :)

Of course I'm never using all these Extensions during an audit but if
you've installed these, you can do most of the known attacks on
webapplications independent what you're going to test.

If you have any question to one or more of these tools, don't hesitate
to ask :)

Have a nice weekend.

Regards,
Sven


- --

sent by Sven Vetsch / Disenchant

www.disenchant.ch

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFFVdM78luv3I4ijh0RAkI9AKCJQ2TeF+SS0Vg4L6ENtiVbUGWIUACgvuHS
kRjfybgWf5ijhwiKb0swxTg=
=W6D2
-----END PGP SIGNATURE-----


More information about the Owasp-switzerland mailing list