Firefox WebApp testing plugins

Date June 10, 2009

Thanks to Alex (who BTW is leaving Foundstone to go back to university – the very best of luck mate :) ), I heard of this collection of plugins that Adam Muntner has put together.

https://addons.mozilla.org/en-US/firefox/collection/webappsec

Certainly a great collection – I have some of those installed myself, but certainly not all as I’m much more of a Paros proxy guy!  There’s probably way too many toolbars if you install everything and I don’t really want my browser looking like this.

Anything that makes it easier though I’m all for, so have a look at this collection and have a play.  My core is Add N Edit Cookies, Web Developer toolbar, and ProxyButton (not in the collection, but with the other tools perhaps not needed) – pretty much everything else I do in Paros – but you very well may find some of them useful, especially while starting out.

5 Responses to “Firefox WebApp testing plugins”

  1. Alex said:

    And where can this collection of extensions be found?

  2. Marcin said:

    Hi Alex, see https://addons.mozilla.org/en-US/firefox/collection/webappsec

    Mike, how on Earth can you like Paros? To me it just feels clunky. Burp Proxy feels best to me, with WebScarab close second.

    Cheers.

  3. Mike said:

    Sorry Alex – I’ve updated the link to the right one.

    Marcin – I don’t know why, but I’ve just always got on with Paros. It just sort of works for me. I know it’s not as “nice” as others (parsing out params/headers/etc) but I don’t mind that – I just like working with the raw traffic.

  4. $hauvik said:

    Aren’t these all already in firecat?
    http://sourceforge.net/projects/firecatpackage/

  5. Adam said:

    $hauvik –

    Many are… this fulfills a different purpose.

    Collections are a new feature of Firefox.

    You can subscribe to the “Collection” of plugins from Firefox – it’s a feed – and install them easily, individually, from inside the browser.



Leave a Reply

XHTML: You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>