[Linux-Biella] [Security] Google apre ratproxy. Interessante

Cristiano Deana cris a deana.it
Gio 3 Lug 2008 12:04:29 CEST


Sembrerebbe interessante:

http://googleonlinesecurity.blogspot.com/2008/07/meet-ratproxy-our-passive-web-security.html

"We're happy to announce that we've just open-sourced ratproxy, a 
passive web application security assessment tool that we've been using 
internally at Google."
[snip]
"The proxy analyzes problems such as cross-site script inclusion 
threats, insufficient cross-site request forgery defenses, caching 
issues, cross-site scripting candidates, potentially unsafe cross-domain 
code inclusion schemes and information leakage scenarios, and much more"


Maggiori informazioni sulla lista Linux