Hack Tab Web Security Tests Chrome 插件, crx 扩展下载
扩展ID: nipgnhajbnocidffkedmkbclbihbalag
Test web apps for XSS, SQL Injection, File Inclusion, support login and CSRF. Developers, QA, Pen TestersABOUT HACKTAB: -------------- HackTab is a web vulnerability testing application in your browser. When enabled for a targeted domain It watches all communication between your browser and the site you are testing and it identifies each parameter and data type for each parameter. This allows HackTab to re-create any communication between your browser and the target domain and test all HTTP parameter inputs to the application. Hacktab only tracks requests to domains you target and includes watermarks on pages it is tracking. HackTab currently tests for Reflected Cross Site Scripting, Persistent XSS, SQL Injection, Local File Includes and Cross Site Request Forgery. It is blazingly fast and can handle most web forms including forms with CSRF protection. KNOWN BUGS: ------------ * please report! INTRODUCTION VIDEO: ------------------- https://www.youtube.com/watch?v=gnHfXWGg4Aw CURRENT TESTS: -------------- Cross Site Request Forgery Reflected XSS MySQL Injection - sleep() MS SQL Injection - wait for() Generic SQL Injection - and 1=2 Local File Inclusion COMMON QUESTIONS: ----------------- Q: Does HackTab monitor all of my web traffic? A: No. HackTab ONLY monitors traffic to domains you target in it's configuration and ONLY when enabled Q: Does HackTab scan the site when I target it? A: No. HackTab only sends tests for the parameters you target and only sends the tests that you have selected when you scan that single parameter. All tests are manually triggered. Q: Where are the tests run from? A: The tests are run directly from your web browser. Q: What permissions does HackTab require? A: HackTab requires permission to send HTTP requests to targeted domains and also read the responses from those targeted domains. Q: Does HackTab store any information about vulnerabilities? A: No. All site data is stored in your local Chrome extension. HackTab uses Google Analytics to store usage data. This includes number of tests run and which features users are using. No site information or identifying information is used or stored anywhere outside of your web browser. Change Log: ---------- 2.1.1: added support for Persistent XSS ! fixed a bug when counting vulnerabilities on parameters fixed a bug displaying different urls with same parameter names improved error handling and logging various other bug fixes 2.1.0: added testing for CSRF vulnerability added flag for server state added success and failure strings bug fix when testing single parameter bug fix when deleting a url replaced watermark logo for tracked pages removed verbose logging removed dead code decreased footprint of content scripts 2.0.4: Fully redesigned UI Ability to save scans Ability to load scans Test entire hosts Test entire URLS Improvements in testing CORS headers Prerequisites for CSRF plugin Various bug fixes Added watchdog timer to handle stuck plugins Improved support for filtered requests, firewalled hosts and timeouts 1.10.2: Fixes for CORS requests. Now updates Origin HTTP header and sets the Origin to the HTTP Host header value. Added several new fields including number of requests set per test, test time and a sample test URL Several bug fixes around analytics logging. Included new feedback form in popup so users can leave feedback about new features 1.0.9: reduced analytics overhead test probes are now sent from web workers greatly improving performance and responsiveness! reduced debug logging several small bug fixes 1.0.7: fix for auto detecting CSRF token regular expressions 1.0.6: fixed edge case that could cause probe requests to be logged when scanning many parameters at once 1.0.5: fixed crash logging updated API DNS 1.0.3: Fully redesigned interface. Single threaded to prevent requests from interfering with each other New "current domain" target button allows for easily selecting the current domain Improved internal storage lowers memory footprint Many bug fixes More consistent output 0.9.17: * support for sending cookies with test data. * Fix spinner when testing MySQL and MSSQL. * Rename MS and My SQL vulnerability types for better clarity.
名称 | Hack Tab Web Security Tests |
插件标识 | nipgnhajbnocidffkedmkbclbihbalag |
平台 | Chrome |
评分 | 3.85 |
评分人数 | 34 |
插件主页 | |
作者 | protect.logic |
版本号 | 2.4.9 |
大小 | 337 KB |
官网下载次数 | 8536 |
下载地址 | |
更新时间 | 2017-09-04 00:00:00 |
CRX扩展文件安装方法
打开Chrome浏览器的扩展程序: 地址栏直接输入:chrome://extensions/ 即可进入,将右上角的【开发者模式】开启,重启chrome(重要操作),再次打开扩展程序管理界面,把下载的crx直接拖动进去即可完成安装,注意请更新最新版本的chrome.
打开Chrome浏览器的扩展程序: 地址栏直接输入:chrome://extensions/ 即可进入,将右上角的【开发者模式】开启,重启chrome(重要操作),再次打开扩展程序管理界面,把下载的crx直接拖动进去即可完成安装,注意请更新最新版本的chrome.
回复
强烈推荐
相关推荐
大家在找这些插件
- idgn
- 股票基金管家
- switch Omega
- word highlight
- setuovon
- ghler
- ligopartners.com
- 视频号
- ug
- Supercopy
- insgram
- acg
- 视频会员
- HPOI
- avtar
- acr
- Kimi
- antibot
- chandler
- 1passward
- Flash Copilot
- 黑暗模式-护眼
- 蓉城
- 税号
- Pornhub 视频免费下载器 Chrome 插件_DESKTOP
- 黑暗模式-夜眼
- hare
- ai渲染
- 超市投标书
- luccascovo.com
- commercialera.com
- wechatneedweb
- 多线程下载管理插件
- 多线程下载插件
- asciidoctor.js
- 标签页冻结
- uipx-chrome-plugin-master
- Koala Inspector
- palinsestotv.com
- magyargifts.com
- 秘密阅读助手
- 媒体流
- docs online viewer
- NTKO WEB chrome
- kimi阅读助手
- ungerboeck
- bookmark preview
- easy scraper
- been choice
- css pr
- popchatgpt
- zeroomega
- openh246
- bookmark preview - productivity and extensio
- kimi网页总结助手
- ai文生视频
- canvasblocker
- fuzz
- bookmark preview - productivity and extension
- rss feed reader
- free ???vp
- right-click image saver free
- notion web clipper
- speed conctroll
- baiduexport
- transkriptor
- ttpheader
- cog system view
- ublock origin 1.54.0
- troywell
- kimi copilot
- ai文字生视频
- asciidoctor.js live preview download chrome
- link preview sidebar
- asciidoctor.js live preview
- tinamind
- 视频网页全屏
- 跳墙
- trancyt
- 文章总结
- mpi-corporation.com
- Pornhub è§é¢å è´¹ä¸è½½å¨ Chrome æ件
- 安全协议
- Kimi网页总结助手
- Kimi阅读助手
- elmo
- Easy Scraper
- mega303bet.jimdosite.com
- megapari2023com.jimdosite.com
- chart gpt
- infinity标签页
- enblecopy
- hala
- Right-click Image Saver Free
- COG SYSTEM VIEW
- COG
- dynamics power pane
- dynamics crm
相关搜索词
- hack
- quizlet hack
- Hack this page
- Hack this page
- hack this page
- Hack YouTube Age Restriction
- Hack YouTube Age Restriction crx插件
- hack bar
- Onlyfans Hack
- onlyfans hack
- hack-tools
- Hack-Tools
- hack-tool
- Hack YouTube Age Restrictio
- Hack
- web tab
- WEB TAB
- VeePN – Unlimited Free & Fast Security VP
- fast security tunnel
- Free Unblock Security
- UltraSurf Security Privacy
- security
- veepn – unlimited free & fast security vp