No-CSRF

Prevent cookies from being client-side sent cross-origin.

O que é No-CSRF?

No-CSRF é uma extensão do Chrome desenvolvida por brandonio21, e sua principal característica é "Prevent cookies from being client-side sent cross-origin.".

Capturas de Tela da Extensão

screenshot

Baixar o arquivo CRX da Extensão No-CSRF

Baixe arquivos de extensão No-CSRF no formato crx, instale manualmente as extensões do Chrome no navegador ou compartilhe os arquivos crx com amigos para instalar facilmente as extensões do Chrome.

Instruções de Uso da Extensão

                        Cross-Site Request Forgery is a major problem when it comes to browsing the web. If an attacker were to craft a request toward a server that performs an action, the request would contain any identifying cookies you have. As pointed out in academic literature, this can be used to empty bank accounts, change passwords, or anything in between.

This extension attempts to prevent Cross-Site Request Forgery by stripping cookies from any (non-GET) request that does not follow the same-origin policy. In this way, normal browsing remains uninterrupted while any possible CRSF attacks are blocked!

The extension is easily disabled and contains a small report of all requests which had cookies stripped. 

This extension is open source and the source code is viewable at https://github.com/brandonio21/no-csrf

This extension is based on a similar extension by avlidienbrunn                    

Informações Básicas da Extensão

Nome No-CSRF No-CSRF
ID amababajdpoioajiapncbkhcbpkncepk
URL Oficial https://chromewebstore.google.com/detail/no-csrf/amababajdpoioajiapncbkhcbpkncepk
Descrição Prevent cookies from being client-side sent cross-origin.
Tamanho do Arquivo 9.58 KB
Contagem de Instalações 392
Versão Atual 0.42
Última Atualização 2016-07-05
Data de Publicação 2016-07-04
Classificação 5.00/5 Total de 1 Avaliações
Desenvolvedor brandonio21
Email [email protected]
Tipo de Pagamento free
Site da Extensão https://github.com/brandonio21/no-csrf
URL da Página de Ajuda https://github.com/brandonio21/no-csrf
Idiomas Suportados en
manifest.json
{
    "update_url": "https:\/\/clients2.google.com\/service\/update2\/crx",
    "manifest_version": 2,
    "name": "No-CSRF",
    "version": "0.42",
    "description": "Prevent cookies from being client-side sent cross-origin.",
    "icons": {
        "128": "badge.png"
    },
    "permissions": [
        "webRequest",
        "webRequestBlocking",
        "tabs",
        "webNavigation",
        ""
    ],
    "background": {
        "scripts": [
            "background.js"
        ]
    },
    "browser_action": {
        "default_icon": "badge.png",
        "default_popup": "popup.html"
    }
}