Audit Knowledge Base

Your FREE resource for Audit information

Home IT Audit Tools RatProxy - Google Web Application Security Audit Tool
RatProxy - Google Web Application Security Audit Tool Print E-mail
Written by Administrator   
Tuesday, 16 June 2009 15:27

Free download Google open-source Web app security assessment tool from Google security team:

quick download (tar.gz)
download page

RatProxy Description:

A semi-automated, largely passive web application security audit tool, optimized for an accurate and sensitive detection, and automatic annotation, of potential problems and security-relevant design patterns based on the observation of existing, user-initiated traffic in complex web 2.0 environments.

Ratproxy detects and prioritizes broad classes of security problems, such as dynamic cross-site trust model considerations, script inclusion issues, content serving problems, insufficient XSRF and XSS defenses, and much more.

Ratproxy is currently believed to support Linux, FreeBSD, MacOS X, and Windows (Cygwin) environments.


Bookmark and Share