|
WebApp Sec
mailing list archives
Re: stompy the session stomper - tool availability
From: Michal Zalewski <lcamtuf () dione ids pl>
Date: Sun, 28 Jan 2007 11:16:27 +0100 (CET)
On Sun, 28 Jan 2007, Rogan Dawes wrote:
Just wanted to point out that Dave has had nothing to do with WebScarab
(and that I recognise that WebScarab's analysis is pretty trivial).
Geee, sorry, I suck for misspelling your name (but feel retroactively
avenged: this happens to me quite often ;-).
Would you have any objection to me including/porting Stompy's analysis
portion into WebScarab, to make it more accessible to folk?
No, why, it'd be in all likelihood helpful to others; the code is LGPLed,
and I can relicense it to you under some other terms if you prefer.
-------------------------------------------------------------------------
Sponsored by: Watchfire
It's been reported that 75% of websites are vulnerable to attack. That's
because hackers know to exploit weaknesses in web applications.
Traditional approaches to securing these assets no longer apply. Download
the "Addressing Challenges in Application Security" whitepaper today,
and see for yourself.
https://www.watchfire.com/securearea/whitepapers.aspx?id=701500000008fHF
--------------------------------------------------------------------------
By Date
By Thread
Current thread:
|