[Linux-Biella] [Security] Google apre ratproxy. Interessante
Cristiano Deana
cris a deana.it
Gio 3 Lug 2008 12:04:29 CEST
Sembrerebbe interessante:
http://googleonlinesecurity.blogspot.com/2008/07/meet-ratproxy-our-passive-web-security.html
"We're happy to announce that we've just open-sourced ratproxy, a
passive web application security assessment tool that we've been using
internally at Google."
[snip]
"The proxy analyzes problems such as cross-site script inclusion
threats, insufficient cross-site request forgery defenses, caching
issues, cross-site scripting candidates, potentially unsafe cross-domain
code inclusion schemes and information leakage scenarios, and much more"
Maggiori informazioni sulla lista
Linux