AuRA - Auth. Request Analyser

Semi-automated analysis tool for OAuth 2.0 and OpenID Connect 1.0 Auth Requests.

什麼是AuRA - Auth. Request Analyser?

AuRA - Auth. Request Analyser是由https://security.lauritz-holtmann.de開發的Chrome擴展程式,該擴展的主要功能是“Semi-automated analysis tool for OAuth 2.0 and OpenID Connect 1.0 Auth Requests.”。

擴展截圖

screenshot

下載AuRA - Auth. Request Analyser擴展crx文件

下載AuRA - Auth. Request Analyser擴展crx格式的文件,手動將Chrome擴充功能安裝到瀏覽器中,也可以將crx文件分享給朋友,輕鬆安裝Chrome擴充功能。

擴展使用說明

                        This extensions aims to support the analysis of single sign-on implementations, by offering semi-automated analysis and attack capabilities for OAuth 2.0 and OpenID Connect 1.0 Auth. Requests.

Features:
• View request parameters at a glance, either via the popup or the developer tools panel.
  • Hover over standardised parameters for background information about parameters.
• Manually modify request parameters.
• Detailed Analysis of request parameters:
  • Observations: Informational findings within the Auth. Request.
  • Recommendations: Hardening measures directly identified within the current Auth. Request.
  • Attacks: Proposed further test cases, can be automatically executed with one click.
• Search history for Auth. Request and replay the request.
• Indicate with a badge if the currently visited page appears to be an Auth. Request.
• Store and reload URL: Can be used as clipboard for one valid request, restore saved URL in case an error causes a redirect.
• Manually trigger analysis.                    

擴展基本資訊

名稱 AuRA - Auth. Request Analyser AuRA - Auth. Request Analyser
ID clonpaankbndgnciijbiokgjeofjdpeg
官方網址 https://chromewebstore.google.com/detail/aura-auth-request-analyse/clonpaankbndgnciijbiokgjeofjdpeg
簡介 Semi-automated analysis tool for OAuth 2.0 and OpenID Connect 1.0 Auth Requests.
檔案大小 24.22 KB
安裝次數 183
目前版本 1.1
更新時間 2022-03-30
上架時間 2021-11-11
開發者 https://security.lauritz-holtmann.de
電子郵箱 [email protected]
付費類型 free
擴展官網 https://github.com/lauritzh/auth-request-analyser
說明頁面URL https://twitter.com/_lauritz_
隱私政策頁面URL https://security.lauritz-holtmann.de/privacy
支援的語言 en
manifest.json
{
    "update_url": "https:\/\/clients2.google.com\/service\/update2\/crx",
    "manifest_version": 3,
    "name": "AuRA - Auth. Request Analyser",
    "version": "1.1",
    "action": {
        "default_popup": "application.html"
    },
    "devtools_page": "devtools.html",
    "background": {
        "service_worker": "background.js"
    },
    "permissions": [
        "tabs",
        "storage",
        "history"
    ],
    "description": "Semi-automated analysis tool for OAuth 2.0 and OpenID Connect 1.0 Auth Requests.",
    "icons": {
        "128": "aura_logo_favicon.png"
    }
}