Google Ratproxy - a web application security audit tool

Events happening in the community are now at Drupal community events on www.drupal.org.
niklp's picture

Submitted for perusal by the group, as passed to me by a fellow developer.

"[Google ratproxy is a] semi-automated, largely passive web application security audit tool, optimized for an accurate and sensitive detection, and automatic annotation, of potential problems and security-relevant design patterns based on the observation of existing, user-initiated traffic in complex web 2.0 environments.

Detects and prioritizes broad classes of security problems, such as dynamic cross-site trust model considerations, script inclusion issues, content serving problems, insufficient XSRF and XSS defenses, and much more. "

http://www.linux.com/feature/142675
http://code.google.com/p/ratproxy/

Testing and Quality Assurance

Group organizers

Group notifications

This group offers an RSS feed. Or subscribe to these personalized, sitewide feeds: