truster
Prevent the rendered web-pages from loading resources hosted in untrusted, writable S3 buckets.
Wat is truster?
truster is een Chrome-extensie ontwikkeld door conand, en de belangrijkste functie is "Prevent the rendered web-pages from loading resources hosted in untrusted, writable S3 buckets.".
Extensie Screenshots
Download het CRX-bestand van de extensie truster
Download truster-extensiebestanden in crx-indeling, installeer Chrome-extensies handmatig in de browser of deel de crx-bestanden met vrienden om Chrome-extensies eenvoudig te installeren.
Instructies voor het Gebruik van de Extensie
Websites often load assets (CSS, JS,..) hosted in AWS S3 buckets. Unfortunately, sometimes such buckets are misconfigured allowing unauthorized users to overwrite their files. This results in the possibility for attackers to inject malicious content (for instance malicious cryptomining JS) that gets delivered to the website's visitors. To protect from this threat, truster, communicating with our backend (https://bucketsec.necst.it/), verifies if the resources requested from the visited websites come from an untrusted, writable, bucket, preventing the loading of such resources.
Basisinformatie over de Extensie
Naam | truster |
ID | eiiilcdomkafolppehfkjdaflcblakml |
Officiële URL | https://chromewebstore.google.com/detail/truster/eiiilcdomkafolppehfkjdaflcblakml |
Beschrijving | Prevent the rendered web-pages from loading resources hosted in untrusted, writable S3 buckets. |
Bestandsgrootte | 22.08 KB |
Aantal Installaties | 2,224 |
Huidige Versie | 0.1 |
Laatst Bijgewerkt | 2018-12-22 |
Publicatiedatum | 2018-12-17 |
Beoordeling | 5.00/5 Totaal 1 Beoordelingen |
Ontwikkelaar | conand |
Betalingswijze | free |
Extensiewebsite | https://bucketsec.necst.it/ |
Ondersteunde Talen | en |
manifest.json | |
{ "update_url": "https:\/\/clients2.google.com\/service\/update2\/crx", "name": "truster", "version": "0.1", "description": "Prevent the rendered web-pages from loading resources hosted in untrusted, writable S3 buckets.", "content_security_policy": "default-src 'self'; connect-src https:\/\/bucketsec.necst.it; style-src https:\/\/maxcdn.bootstrapcdn.com\/bootstrap\/", "permissions": [ "storage", "webRequest", "webRequestBlocking", "webNavigation", " |