일 | 월 | 화 | 수 | 목 | 금 | 토 |
---|---|---|---|---|---|---|
1 | ||||||
2 | 3 | 4 | 5 | 6 | 7 | 8 |
9 | 10 | 11 | 12 | 13 | 14 | 15 |
16 | 17 | 18 | 19 | 20 | 21 | 22 |
23 | 24 | 25 | 26 | 27 | 28 |
- 번역툴
- 공유기 패스워드
- 댓글스팸
- * 암호
- 윈도우 탐색기
- 구글캘린더
- 구글웹화면
- Google Calendar
- 가을
- 달력
- Shortcut Key
- 파워셸
- 통합도서회원증
- 단축키
- 레노버
- 패스워드
- 아이콘크기
- rainlendar
- Edge E125
- outwit hub
- Asterisk password reveal
- 구글메인화면
- Firefox
- Windows
- 여름
- web scrapping
- 스케쥴
- 일정관리
- 가로화면
- 2013사진공모전
- Today
- Total
Black&White
Firefox Addons For Penetration Testing 본문
Firefox Addons For Penetration Testing
The majority of the penetration testers are using the Mozilla Firefox
as a web browser for their pentest activities.This article will
introduce the firefox addons that can be used for a web application
penetration test.
1) Firebug
It is useful for the debugging tools that can help you tracking rogue javascript code on servers.
You can use this extension to change the user agent of your
browser.Useful for web application penetration tests that you want to
check and the mobile versions of the websites.
3) Hackbar
Useful for SQL injection and XSS attacks.It includes also tools for URL and HEX encoding/decoding and many more.
4) HttpFox
Monitor and analyze all the incoming and outgoing HTTP traffic between your browser and the web server.
View the HTTP headers of a website instantly.
6) Tamper Data
View and modify HTTP/HTTPS headers and post parameters.
7) ShowIP
Shows the IP of the current page in the status bar.It also includes
information like the hostname,the ISP,the country and the city.
8) OSVDB
Open Source Vulnerability Database Search.
Search the packet storm database for exploits,tools and advisories.
Search the Exploit-db archive.
11) Security Focus Vulnerabilities Search Plugin
Search for vulnerabilities in the Security Focus
12) Cookie Watcher
Watch the selected cookie in the status bar.
13) Header Spy
Shows HTTP Headers on status bar
14) Groundspeed
Manipulate the application user interface.
15) CipherFox
Displays the current SSL/TLS cipher and certificate on the status bar.
16) XSS Me
Tool for testing reflected XSS vulnerabilities.
17) SQL Inject Me
Extension to test SQL Injection vulnerabilities.
18) Wappalyzer
Discover technologies and applications that are used on websites.
19) Poster
Make HTTP requests,interact with web services and watch the output.
Show the JavaScript code that are running on web pages.
21) Modify Headers
Modify HTTP request headers.
22) FoxyProxy
Advanced proxy management tool.
23) FlagFox
Displays a country flag for the location of the web server.It also includes tools such as Whois,Geotool,Ping,Alexa etc.
24) Greasemonkey
Customize the way a webpage behaves by using small bits of JavaScript.
25) Domain Details
Displays Server Type, Headers, IP Address, Location Flag, and links to Whois Reports.
26) Websecurify
Useful for security assessments in web applications.
27) XSSed Search
Search the cross-site scripting database at XSSed.Com
28) ViewStatePeeker
ASP.NET viewstate viewer.
29) CryptoFox
CryptoFox is an encryption/decryption tool for cracking MD5 passwords.
30) WorldIP
Location of the web server,IP,Datacenter,Ping,Traceroute,RDNS,AS etc.
31) Server Spy
Unveils the technology of the web server (Apache, IIS etc.)
Search CIRT.net default password database.
Search for Snort IDS Rules.
출처 : https://pentestlab.wordpress.com/2012/08/12/firefox-addons-for-penetration-testing/
'WebBrowsers > Firefox' 카테고리의 다른 글
Firefox - 검색엔진 추가 및 주소바에서 기본 검색엔진 변경하기 (0) | 2017.02.08 |
---|---|
Firefox 사라진 부가기능 다운로드 (0) | 2017.02.02 |
Firefox 에서 FiddlerHook 제거 방법 (0) | 2016.10.21 |
유용한 Firefox Userstyle 몇가지 (0) | 2016.02.26 |
Firefox 시작 속도 높이기 (1) | 2016.01.26 |