No-CSRF

Prevent cookies from being client-side sent cross-origin.

Wat is No-CSRF?

No-CSRF is een Chrome-extensie ontwikkeld door brandonio21, en de belangrijkste functie is "Prevent cookies from being client-side sent cross-origin.".

Extensie Screenshots

screenshot

Download het CRX-bestand van de extensie No-CSRF

Download No-CSRF-extensiebestanden in crx-indeling, installeer Chrome-extensies handmatig in de browser of deel de crx-bestanden met vrienden om Chrome-extensies eenvoudig te installeren.

Instructies voor het Gebruik van de Extensie

                        Cross-Site Request Forgery is a major problem when it comes to browsing the web. If an attacker were to craft a request toward a server that performs an action, the request would contain any identifying cookies you have. As pointed out in academic literature, this can be used to empty bank accounts, change passwords, or anything in between.

This extension attempts to prevent Cross-Site Request Forgery by stripping cookies from any (non-GET) request that does not follow the same-origin policy. In this way, normal browsing remains uninterrupted while any possible CRSF attacks are blocked!

The extension is easily disabled and contains a small report of all requests which had cookies stripped. 

This extension is open source and the source code is viewable at https://github.com/brandonio21/no-csrf

This extension is based on a similar extension by avlidienbrunn                    

Basisinformatie over de Extensie

Naam No-CSRF No-CSRF
ID amababajdpoioajiapncbkhcbpkncepk
Officiële URL https://chromewebstore.google.com/detail/no-csrf/amababajdpoioajiapncbkhcbpkncepk
Beschrijving Prevent cookies from being client-side sent cross-origin.
Bestandsgrootte 9.58 KB
Aantal Installaties 392
Huidige Versie 0.42
Laatst Bijgewerkt 2016-07-05
Publicatiedatum 2016-07-04
Beoordeling 5.00/5 Totaal 1 Beoordelingen
Ontwikkelaar brandonio21
E-mail [email protected]
Betalingswijze free
Extensiewebsite https://github.com/brandonio21/no-csrf
Help Pagina-URL https://github.com/brandonio21/no-csrf
Ondersteunde Talen en
manifest.json
{
    "update_url": "https:\/\/clients2.google.com\/service\/update2\/crx",
    "manifest_version": 2,
    "name": "No-CSRF",
    "version": "0.42",
    "description": "Prevent cookies from being client-side sent cross-origin.",
    "icons": {
        "128": "badge.png"
    },
    "permissions": [
        "webRequest",
        "webRequestBlocking",
        "tabs",
        "webNavigation",
        ""
    ],
    "background": {
        "scripts": [
            "background.js"
        ]
    },
    "browser_action": {
        "default_icon": "badge.png",
        "default_popup": "popup.html"
    }
}