PDA

Просмотр полной версии : Release SWFIntruder


Fugitif
05.12.2007, 00:14
The first release of SWFIntruder

SWFIntruder (pronounced Swiff Intruder) is the first tool specifically developed for analyzing and testing security of Flash applications at runtime.
SWFIntruder was developed using ActionScript, Html and JavaScript resulting in a tool taking advantage of the best features of those technologies in order to get the best capabilities for analysis and interaction with the testing Flash movies.


Some neat feature:

* Basic predefined attack patterns.
* Highly customizable attacks.
* Highly customizable undefined variables.
* Semi automated Xss check.
* User configurable internal parameters.
* Log Window for debugging and tracking.
* History of latest 5 tested SWF files.
* ActionScript Objects runtime explorer in tree view.
* Persistent Configuration and Layout.

Latest Features:

Permanent Preferences, Help Topics, ActionScript Object Explorer, Automated Xss testing fully customizable.

Requirements:

1. Firefox 2.x [Needed]
2. FireBug Addon [Suggested]
3. Flash Player Plugin Ver >= 9 [Needed]
4. Any Web Server [Needed]
5. Any OS [Needed :> ]

Video Tutorial

http://www.mindedsecurity.com/labs/fileshare/SWFIntruderTutorial.swf

Home Page for Download and More Info:

https://www.owasp.org/index.php/Category:SWFIntruder