Your FREE resource for Audit information
| RatProxy - Google Web Application Security Audit Tool |
|
|
| Written by Administrator |
| Tuesday, 16 June 2009 15:27 |
Free download Google open-source Web app security assessment tool from Google security team: quick download (tar.gz) RatProxy Description: A semi-automated, largely passive web application security audit tool, optimized for an accurate and sensitive detection, and automatic annotation, of potential problems and security-relevant design patterns based on the observation of existing, user-initiated traffic in complex web 2.0 environments. Ratproxy detects and prioritizes broad classes of security problems, such as dynamic cross-site trust model considerations, script inclusion issues, content serving problems, insufficient XSRF and XSS defenses, and much more. Ratproxy is currently believed to support Linux, FreeBSD, MacOS X, and Windows (Cygwin) environments. |