<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:series="http://unfoldingneurons.com/"
	>

<channel>
	<title>a4apphack &#187; addons</title>
	<atom:link href="http://a4apphack.com/index.php/tag/addons/feed" rel="self" type="application/rss+xml" />
	<link>http://a4apphack.com</link>
	<description>Get more out of the Apps!</description>
	<lastBuildDate>Thu, 26 Apr 2012 15:44:13 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
<image>
<link>http://a4apphack.com</link>
<url>http://a4apphack.com/blog/wp-content/themes/primus/favicon.ico</url>
<title>a4apphack</title>
</image>
		<item>
		<title>List of Chrome Browser Extensions for Security Analysts</title>
		<link>http://a4apphack.com/featured/list-of-chrome-browser-extensions-for-security-analysts</link>
		<comments>http://a4apphack.com/featured/list-of-chrome-browser-extensions-for-security-analysts#comments</comments>
		<pubDate>Fri, 15 Apr 2011 23:43:54 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[chrome]]></category>

		<guid isPermaLink="false">http://a4apphack.com/?p=2140</guid>
		<description><![CDATA[List of chrome browser extensions that can be useful while performing application security assessments. Some of the extensions are already discussed earlier in our blog. On the sidenote, a similar collection exists for Firefox users &#8211; check SecFox at Mozilla Addons Collection site Note: Below table will be updated regularly. If you find any addons [...]]]></description>
			<content:encoded><![CDATA[<p>List of chrome browser extensions that can be useful while performing application security assessments. Some of the extensions are already discussed <a title="earlier" href="http://a4apphack.com/featured/13-chrome-extensions-for-security-testers">earlier in our blog</a>. On the sidenote, a similar collection exists for Firefox users &#8211; check <a title="Mozilla Addons - SecFox" href="https://addons.mozilla.org/en-US/firefox/collections/rajivvishwa/secfox/">SecFox</a> at Mozilla Addons Collection site</p>
<p><em><strong>Note: Below table will be updated regularly. If you find any addons that are not listed but might be useful while conducting pentests, please mention in comments.<br />
</strong></em></p>
<p><span id="more-2140"></span></p>

<table id="wp-table-reloaded-id-6-no-1" class="wp-table-reloaded wp-table-reloaded-id-6">
<thead>
	<tr class="row-1 odd">
		<th class="column-1">Name</th><th class="column-2">Description</th><th class="column-3">Chrome Store URL</th><th class="column-4">Developer</th><th class="column-5">Keywords</th>
	</tr>
</thead>
<tbody>
	<tr class="row-2 even">
		<td class="column-1">AntiXSS </td><td class="column-2">detect possible weak points and xss attacks</td><td class="column-3"><a href="https://chrome.google.com/extensions/detail/pohooglepenpccfcljdhhbmojeghijno">Chrome WebStore Link</a></td><td class="column-4"></td><td class="column-5">XSS, Scanner</td>
	</tr>
	<tr class="row-3 odd">
		<td class="column-1">BuiltWith</td><td class="column-2">BuiltWith is a web site profiler tool. Displays the frameworks and other libraries with which that website is built</td><td class="column-3"><a href="https://chrome.google.com/extensions/detail/dapjbgnjinbpoindlpdmhochffioedbn?hl=en">Chrome WebStore Link</a></td><td class="column-4"><a href="http://builtwith.com/">link</a></td><td class="column-5">Application Fingerprinting</td>
	</tr>
	<tr class="row-4 even">
		<td class="column-1">Chrome IE Tab Multi</td><td class="column-2">Run ActiveX controls on Chrome</td><td class="column-3"><a href="https://chrome.google.com/extensions/detail/fnfnbeppfinmnjnjhedifcfllpcfgeea?hl=en">Chrome WebStore Link</a></td><td class="column-4"><a href="http://iblogbox.com/chrome/ietab">link</a></td><td class="column-5">ActiveX testing</td>
	</tr>
	<tr class="row-5 odd">
		<td class="column-1">Chrome Sniffer</td><td class="column-2">This extension will help web developer to inspect web framework / CMS and javascript library running on current browsing website. An icon will appear on address bar indicates the detected framework. Version detecting is being implemented.</td><td class="column-3"><a href="https://chrome.google.com/extensions/detail/homgcnaoacgigpkkljjjekpignblkeae">Chrome WebStore Link</a></td><td class="column-4"><a href="http://www.nqbao.com/chrome-sniffer">link</a></td><td class="column-5">Application Fingerprinting</td>
	</tr>
	<tr class="row-6 even">
		<td class="column-1">Domain Details</td><td class="column-2">Domain Details provides the following information on the site you are visiting:<br />
<br />
- Server IP Address<br />
- Server's Location. Based on a Geo IP database in the extension, does not poll an external service.<br />
- Server Software. Shows icons for common servers.<br />
- View server response headers within the extension<br />
- Domain Whois Links</td><td class="column-3"><a href="https://chrome.google.com/extensions/detail/ekgdjkmnfildhenmlbefaajoljlkekfg">Chrome WebStore Link</a></td><td class="column-4"><a href="http://dndetails.com/">link</a></td><td class="column-5">Network Fingerprinting</td>
	</tr>
	<tr class="row-7 odd">
		<td class="column-1">Edit This Cookie</td><td class="column-2">This extension lets you:<br />
Delete all cookies in a page, Delete only the chosen cookie on a page, Edit any cookie, Add a new cookie, Search a cookie, Protect a cookie (read-only), Block cookies (cookie filter)</td><td class="column-3"><a href="https://chrome.google.com/webstore/detail/fngmhnnpilhplaeedifhccceomclgfbg">Chrome WebStore Link</a><a href="https://chrome.google.com/webstore/detail/fngmhnnpilhplaeedifhccceomclgfbg">Chrome WebStore Link</a></td><td class="column-4"></td><td class="column-5">Cookie Editor, Session Management/Fixation</td>
	</tr>
	<tr class="row-8 even">
		<td class="column-1">Firebug Lite</td><td class="column-2">Firebug Lite is not a substitute for Firebug, or Chrome Developer Tools. It is a tool to be used in conjunction with these tools. Firebug Lite provides the rich visual representation we are used to see in Firebug when it comes to HTML elements, DOM elements, and Box Model shading. It provides also some cool features like inspecting HTML elemements with your mouse, and live editing CSS properties.</td><td class="column-3"><a href="https://chrome.google.com/webstore/detail/bmagokdooijbeehmkpknfglimnifench">Chrome WebStore Link</a></td><td class="column-4"><a href="http://getfirebug.com">link</a></td><td class="column-5">Dynamic Frontend Manipulation/Injection, Bypass Client Side Validations</td>
	</tr>
	<tr class="row-9 odd">
		<td class="column-1">Form Fuzzer</td><td class="column-2">Fuzz testing utility I created to assist in populating web forms with some random data.</td><td class="column-3"><a href="https://chrome.google.com/extensions/detail/cbpplldpcdcfejdaldmnfhlodoadjhii">Chrome WebStore Link</a></td><td class="column-4"><a href="http://www.crapsoftware.info/p/form-fuzzer.html">link</a></td><td class="column-5">Parameter Manipulation/Injection</td>
	</tr>
	<tr class="row-10 even">
		<td class="column-1">JSONView for Chrome</td><td class="column-2">JSONView for chrome is an extension that helps you to parse and view JSON documents</td><td class="column-3"><a href="https://chrome.google.com/extensions/detail/chklaanhfefbnpoihckbnefhakgolnmc">Chrome WebStore Link</a></td><td class="column-4"><a href="http://jsonview.com/">link</a></td><td class="column-5">Helper Extension</td>
	</tr>
	<tr class="row-11 odd">
		<td class="column-1">Latest Sophos Security Alerts </td><td class="column-2">Displays the Sophos security alerts direct in your browser</td><td class="column-3"><a href="https://chrome.google.com/extensions/detail/nlkjlfcipnekjlleclkkkefdphbdemma">Chrome WebStore Link</a></td><td class="column-4"></td><td class="column-5">Helper</td>
	</tr>
	<tr class="row-12 even">
		<td class="column-1">Pendule</td><td class="column-2">convert POSTs to GETs, Remove Maxlength, view selection source (syntax highlighted code appears in a new <br />
tab, similar to built-in view source functionnality)</td><td class="column-3"><a href="https://chrome.google.com/webstore/detail/gbkffbkamcejhkcaocmkdeiiccpmjfdi">Chrome WebStore Link</a></td><td class="column-4"></td><td class="column-5">Dynamic Frontend Manipulation/Injection, Bypass Client Side Validations</td>
	</tr>
	<tr class="row-13 odd">
		<td class="column-1">Proxy Switchy!</td><td class="column-2">Proxy Switchy! is an advanced proxy manager for Google Chrome, it allows users to manage and switch between multiple proxy profiles quickly and easily.</td><td class="column-3"><a href="https://chrome.google.com/extensions/detail/caehdcpeofiiigpdhbabniblemipncjj">Chrome WebStore Link</a></td><td class="column-4"><a href="http://switchy.samabox.com/">link</a></td><td class="column-5">Proxy Tools</td>
	</tr>
	<tr class="row-14 even">
		<td class="column-1">Simple REST Client</td><td class="column-2">Simple REST Client is an extension for Google Chrome to help construct custom<br />
HTTP requests to directly test your web services.<br />
<br />
Select the URL, method, fill the headers and body if necessary.<br />
Click Send.<br />
Analyze response headers and body.</td><td class="column-3"><a href="https://chrome.google.com/webstore/detail/fhjcajmcbmldlhcimfajhfbgofnpcjmb">Chrome WebStore Link</a></td><td class="column-4"><a href="http://www.jeremyselier.com/">link</a></td><td class="column-5">Parameter Manipulation/Injection</td>
	</tr>
	<tr class="row-15 odd">
		<td class="column-1">Swap My Cookies </td><td class="column-2">Swap My Cookies is a session manager, it manages your cookies, letting you login on any website with several different accounts. You can finally  login into gmail, yahoo, hotmail, and just any website you use, with all your accounts; if you want to use another account just swap profile!</td><td class="column-3"><a href="https://chrome.google.com/extensions/detail/dffhipnliikkblkhpjapbecpmoilcama?hl=en">Chrome WebStore Link</a></td><td class="column-4"></td><td class="column-5">Session Fixation/Management</td>
	</tr>
	<tr class="row-16 even">
		<td class="column-1">Unencrypted Password Warning</td><td class="column-2">Unencrypted Password Warning detects whether a password or credit card number is about to be sent with a form that does not use HTTPS.</td><td class="column-3"><a href="https://chrome.google.com/extensions/detail/mjpinemnkjlppmemjfabdaelpfgfjgkj">Chrome WebStore Link</a></td><td class="column-4"></td><td class="column-5">Detects Security Flaw</td>
	</tr>
	<tr class="row-17 odd">
		<td class="column-1">User-Agent Switcher for Chrome</td><td class="column-2">The extension allows you to set a specific filtering list, so it will automatically switch user-agent strings based on the domain or URL you specify.  Also, it will use and auto-update a list of sites known to use incorrect user-agent sniffing (which can be disabled.)</td><td class="column-3"><a href="https://chrome.google.com/extensions/detail/aafciojnlamllgpkpdkbamkfgbofhgcj">Chrome WebStore Link</a></td><td class="column-4"><a href="http://spoofer-extension.appspot.com/">link</a></td><td class="column-5">Mobile Security Testing, Client-side Bypass</td>
	</tr>
	<tr class="row-18 even">
		<td class="column-1">Web Developer</td><td class="column-2">Official port of the popular Web Developer extension for Firefox.convert POSTs to GETs, Remove Maxlength, view selection source (syntax highlighted code appears in a new <br />
tab, similar to built-in view source functionnality)</td><td class="column-3"><a href="https://chrome.google.com/webstore/detail/bfbameneiokkgbdmiekhjnmfkcnldhhm">Chrome WebStore Link</a></td><td class="column-4"><a href="http://chrispederick.com/work/web-developer/chrome/">link</a></td><td class="column-5">Dynamic Frontend Manipulation/Injection, Bypass Client Side Validations</td>
	</tr>
	<tr class="row-19 odd">
		<td class="column-1">Websecurify</td><td class="column-2">Websecurify is a powerful web application security testing platform designed from the ground up to provide the best combination of automatic and manual vulnerability testing technologies.<br />
<br />
This extension is useful to anyone who wants to quickly assess the security of their web applications.<br />
</td><td class="column-3"><a href="https://chrome.google.com/webstore/detail/emclbdbpcnhmopfkidjhlinikkohlkpn">Chrome WebStore Link</a></td><td class="column-4"><a href="http://www.websecurify.com">link</a></td><td class="column-5">Web Page Scanner</td>
	</tr>
	<tr class="row-20 even">
		<td class="column-1">XSS Rays</td><td class="column-2">Complete XSS reversing/scanner tool. Find how a site is filtering code, check for injections and inspect objects.</td><td class="column-3"><a href="https://chrome.google.com/extensions/detail/kkopfbcgaebdaklghbnfmjeeonmabidj">Chrome WebStore Link</a></td><td class="column-4"><a href="http://www.xssrays.co.uk/">link</a></td><td class="column-5">XSS, Scanner</td>
	</tr>
</tbody>
</table>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=2140&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/list-of-chrome-browser-extensions-for-security-analysts/feed</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Proxy Switchy Chrome Extension for Security Analysts</title>
		<link>http://a4apphack.com/security/sec-browser/proxy-switchy-chrome-extension-for-security-analysts</link>
		<comments>http://a4apphack.com/security/sec-browser/proxy-switchy-chrome-extension-for-security-analysts#comments</comments>
		<pubDate>Mon, 24 Jan 2011 20:36:49 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[chrome]]></category>
		<category><![CDATA[va]]></category>

		<guid isPermaLink="false">http://a4apphack.com/?p=2114</guid>
		<description><![CDATA[Proxy Switchy! is an advanced proxy manager for Google Chrome, it allows users to manage and switch between multiple proxy profiles quickly and easily. This will be one must-have addition to the chrome addons that helps for security testing which we had discussed earlier here. While conducting blackbox security assessments, we normally do analysis on communication [...]]]></description>
			<content:encoded><![CDATA[<p>Proxy Switchy! is an advanced proxy manager for Google Chrome, it allows users to manage and switch between multiple proxy profiles quickly and easily.</p>
<p>This will be one must-have addition to the chrome addons that helps for security testing which we had discussed earlier <a href="http://a4apphack.com/featured/13-chrome-extensions-for-security-testers">here</a>. While conducting blackbox security assessments, we normally do analysis on communication between the server and the browser (client). This is done with the help of various software proxy interceptors such as Paros, Webscarb, Burp etc. by redirecting traffic to these proxies.</p>
<p><img title="Proxy Switchy - Chrome" src="http://img.a4apphack.com/proxyswitchy-switchdropdown.jpg" alt="Proxy Switchy - Chrome" width="298" height="280" /></p>
<p>Most of the times its required to change the browser proxy settings to<br />
1. Change the port to switch the listener (proxy) that intercepts web traffic<br />
2. Filter the URLs that are not in our scope to reduce the overhead on the proxy.<br />
3. Match the URLs to send to different listeners based on certain patterns.</p>
<p>Proxy switch can help to easily overcome the situations mentioned above.</p>
<p><span id="more-2114"></span></p>
<h4>Features</h4>
<p>- Manage and switch between multiple proxy profiles.<br />
- Change the proxy configuration of Chrome and IE in one click.<br />
- URL based switch rules.<br />
- Supports Socks v4 and v5.<br />
- Change LAN and VPN/Dial-up proxy settings.<br />
- Quickly add rules for currently active websites.<br />
- Quick proxy switch between two profiles or cycle all profiles.<br />
- Online rule list support (AutoProxy compatible), more details <a title="RuleList" href="http://code.google.com/p/switchy/wiki/RuleList">here</a>.<br />
- Export switch rules as PAC/RuleList file.<br />
- Backup/Restore options.<br />
- Proxy change monitoring.<br />
- Colorful profiles and icons.<br />
- Supports Windows, Linux (32/64 bit) and Mac OS X.</p>
<h4>Screenshots</h4>
<p><img class="alignnone" title="Quick Rule" src="http://img.a4apphack.com/proxyswitchy-quickrule.jpg" alt="Quick Rule" width="422" height="340" /></p>
<p><a href="http://img.a4apphack.com/proxyswitchy-rules.jpg" rel="lightbox[2114]" title="Rules"><img class="alignnone" title="Rules" src="http://img.a4apphack.com/proxyswitchy-rules.jpg" alt="Rules" width="600" height="457" /></a></p>
<p><a href="http://img.a4apphack.com/proxyswitchy-profiles.jpg" rel="lightbox[2114]" title="Profile"><img class="alignnone" title="Profile" src="http://img.a4apphack.com/proxyswitchy-profiles.jpg" alt="Profile" width="600" height="404" /></a></p>
<table id="cft">
  <thead>
  <tr>
    <th colspan="2">Proxy Switchy! Info</th>
  </tr>
  </thead>
  <tbody>
    <tr>
      <td  width="40%">App Name</td>
      <td>Proxy Switchy!</td>
    </tr>
    <tr>
      <td>License</td>
      <td>free</td>
    </tr>
    <tr>
      <td>Type</td>
      <td>portable</td>
    </tr>
    <tr>
      <td>App URL</td>
      <td>
      <a target="_blank" href="https://chrome.google.com/webstore/detail/caehdcpeofiiigpdhbabniblemipncjj#"><img
 style="" alt="Download"
 src="http://img.a4apphack.com/site/a4apphack-download.png"
 title="Download" witdh="30" height="30"></a></td>
    </tr>
    <tr>
      <td>More Info</td>
      <td> <a href="http://code.google.com/p/switchy/">link</a></td>
    </tr>
  </tbody>
</table>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=2114&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/security/sec-browser/proxy-switchy-chrome-extension-for-security-analysts/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Adblock Browser Addon Can Block Malware And Not Just Ads</title>
		<link>http://a4apphack.com/featured/adblock-browser-addon-can-block-malware-and-not-just-ads</link>
		<comments>http://a4apphack.com/featured/adblock-browser-addon-can-block-malware-and-not-just-ads#comments</comments>
		<pubDate>Tue, 28 Sep 2010 22:08:38 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[chrome]]></category>
		<category><![CDATA[customize]]></category>
		<category><![CDATA[Firefox]]></category>

		<guid isPermaLink="false">http://a4apphack.com/?p=2088</guid>
		<description><![CDATA[AdBlock is one of the most popular browser extension that prevents ads or annoying page elements those are usually displayed in any webpage. It works by matching the pattern of unwanted elements in the page with what is available in its database and filters them. Adblock can be made more efficient by adding custom patterns [...]]]></description>
			<content:encoded><![CDATA[<p><span style="font-weight: normal;">AdBlock is one of the most popular browser extension that prevents ads or annoying page elements those are usually displayed in any webpage. It works by matching the pattern of unwanted elements in the page with what is available in its database and filters them. </span></p>
<p><span style="font-weight: normal;">Adblock can be made more efficient by adding custom patterns for the elements to be filtered.. This feature of AdBlock can be extended to block not only the ads but also the malicious content those are injected in seemingly genuine sites. This is done by adding MalwareDomains subscription to our Adblock preferences. M</span>alwareDomain contains a list of domains that are known to be used to propagate malware and spyware. Adblock verifies whether there are any cross domain content loaded from any of malicious websites present in that list and if there is, then it blocks those elements.</p>
<p><em><strong>Note</strong>: Subscribing to this list can increase the load time of the site. Increase in security at the cost of slight reduction in performance.</em></p>
<p>Here, we illustrate the steps to add the MalwareDomain list to our Adblock addon available for Chrome and Firefox browsers.</p>
<h3>I. Adding MalwareDomain Subscription in Chrome</h3>
<p>Download Adblock for Chrome <a title="AdBlock for Chrome" href="https://chrome.google.com/extensions/detail/gighmmpiobklfepjocnamgkkbiglidom">here</a>.</p>
<p>1. Access the AdBlock Options from the Chrome Extensions page and add MalwareDomains URL (http://malwaredomains.lanik.us/malwaredomains_full.txt)</p>
<p><a href="http://img.a4apphack.com/addblockmalware-chromeaddsubs.jpg" rel="lightbox[2088]" title="Chrome Add Subscription"><img title="Chrome Add Subscription" src="http://img.a4apphack.com/addblockmalware-chromeaddsubs.jpg" alt="Chrome Add Subscription" width="600" height="378" /></a></p>
<p>2. Entered URL will now display in the subscriptions list. Make sure that its checked.</p>
<p><img title="Chrome Display Added Subscription" src="http://img.a4apphack.com/addblockmalware-chromedisplaysubs.jpg" alt="Chrome Display Added Subscription" width="450" height="269" /></p>
<h3><span id="more-2088"></span></h3>
<h3>II. Adding MalwareDomain Subscription in Firefox</h3>
<p>Download AdBlock Plus for Firefox <a title="Adblock for Firefox" href="https://addons.mozilla.org/en-US/firefox/addon/1865/">here</a>.</p>
<p>1. Open the Adblock Plus Preferences and click on the &#8216;Add Filter Subscription&#8217; from the Filters menu.</p>
<p><img title="Firefox Add Filter Subscription" src="http://img.a4apphack.com/addblockmalware-firefoxpref.jpg" alt="Firefox Add Filter Subscription" width="561" height="421" /></p>
<p>2. Click on &#8216;Add a different subscription&#8217; link.</p>
<p><img title="Firefox Add Different Subscription" src="http://img.a4apphack.com/addblockmalware-firefoxdiffsubs.jpg" alt="Firefox Add Different Subscription" width="561" height="421" /></p>
<p>3. Add the MalwareDomains URL in the subscription entry (http://malwaredomains.lanik.us/malwaredomains_full.txt)</p>
<p><img title="Firefox Add Subscription" src="http://img.a4apphack.com/addblockmalware-firefoxaddsubs.jpg" border="0" alt="Firefox Add Subscription" width="561" height="463" /></p>
<p>4. List of domains to be filtered will be displayed under the filter which we have newly subscribed. Make sure that its enabled.</p>
<p><img title="Firefox Display Added Subscription" src="http://img.a4apphack.com/addblockmalware-firefoxdisplaysubs.jpg" alt="Firefox Display Added Subscription" width="561" height="413" /></p>
<p><strong>Links</strong></p>
<ul>
<li><a title="MalwareDomains List" href="http://malwaredomains.lanik.us/malwaredomains_full.txt">MalwareDomains List</a></li>
<li><a title="Subscriptions" href="http://adblockplus.org/en/subscriptions">Other AdBlock Suscriptions</a></li>
<li><a title="Adblock For Chrome" href="https://chrome.google.com/extensions/detail/gighmmpiobklfepjocnamgkkbiglidom">AdBlock for Chrome</a></li>
<li><a title="Adblock For Firefox" href="https://addons.mozilla.org/en-US/firefox/addon/1865/">AdBlock for Firefox</a></li>
</ul>
<table id="cft">
  <thead>
  <tr>
    <th colspan="2">MalwareDomains Subscription List Info</th>
  </tr>
  </thead>
  <tbody>
    <tr>
      <td  width="40%">App Name</td>
      <td>MalwareDomains Subscription List</td>
    </tr>
    <tr>
      <td>License</td>
      <td>free</td>
    </tr>
    <tr>
      <td>Type</td>
      <td>online</td>
    </tr>
    <tr>
      <td>App URL</td>
      <td>
      <a target="_blank" href="http://malwaredomains.lanik.us/malwaredomains_full.txt"><img
 style="" alt="Download"
 src="http://img.a4apphack.com/site/a4apphack-download.png"
 title="Download" witdh="30" height="30"></a></td>
    </tr>
    <tr>
      <td>More Info</td>
      <td> <a href="http://malwaredomains.lanik.us/">link</a></td>
    </tr>
  </tbody>
</table>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=2088&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/adblock-browser-addon-can-block-malware-and-not-just-ads/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Conceptualizing Next Gen Browser Experience</title>
		<link>http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience</link>
		<comments>http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience#comments</comments>
		<pubDate>Tue, 31 Aug 2010 07:13:45 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[chrome]]></category>
		<category><![CDATA[concept]]></category>
		<category><![CDATA[customize]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[icon]]></category>
		<category><![CDATA[ie]]></category>
		<category><![CDATA[inspire]]></category>
		<category><![CDATA[organize]]></category>
		<category><![CDATA[space]]></category>
		<category><![CDATA[sync]]></category>

		<guid isPermaLink="false">http://a4apphack.com/?p=2013</guid>
		<description><![CDATA[It is the revolution of web browsers; they rule internet now. Browsers have evolved so much from what we had seen during the days of IE6. Now Firefox, Chrome, Opera, IE are on war to prove who is the best. They try different ways to win the heart of users; Firefox took a great leap [...]]]></description>
			<content:encoded><![CDATA[<p>It is the revolution of web browsers; they rule internet now. Browsers have evolved so much from what we had seen during the days of IE6. Now Firefox, Chrome, Opera, IE are on war to prove who is the best. They try different ways to win the heart of users; Firefox took a great leap by introducing the &#8216;panaroma&#8217; feature &#8211; focus on multitasking, chrome gets appreciation for its fluid design &#8211; focus on simplicity &amp; ease of use, Opera and IE has browser stability on priority &#8211; focus on robustness.</p>
<p><br class="spacer_" /></p>
<p>During this evolution, some browsers tries to standout from others by introducing a new feature which had never been available in any of their counterparts. But the other browsers instead wait for the users comments on the new feature implemented, if appreciated, they implement the same feature in theirs, may be in a better way. The browser who introduced that feature first might even loose its credit in due course. User is forced to switch from their  favorite browser for a &#8216;single feature&#8217; they found useful in the &#8216;other&#8217; browser. Once they completely switch and get used to the new browser, the old one brings out the same feature plus few bonus features. This cycle never ends. Firefox introduced tabs and extensions when IE did not have in them, people were attracted to it and finally switched to firefox. Then the light weight chrome came with Tab tearing, web apps, new tab page with speed dial and many other features, made few users to make chrome as their default browser. Firefox then inherited few of chromes&#8217; features, syncing and expose like tab candy/panaroma effects. We don&#8217;t have to switch browsers just for UI features, and if at all we do, it should be seamless.</p>
<p><br class="spacer_" /></p>
<p>This article tries to identify best features in each of the browser and the features we expect to be part any modern browser. Here, we try to baseline few ideas, those ideas which takes browser design to the next level.</p>
<p><strong>Browser Main Screen (Mockup)</strong></p>
<div class="wp-caption alignnone" style="width: 610px"><strong><strong><img class="" title="Browser Main Screen" src="http://img.a4apphack.com/browserconcept-main.jpg" alt="Browser Main Screen" width="600" height="487" /></strong></strong><p class="wp-caption-text">MOCKUP - Main Screen - Click over image to zoom</p></div>
<p><span id="more-2013"></span></p>
<h2>Highlights</h2>
<h3><span style="text-decoration: underline;">Main Screen</span></h3>
<p><strong>1. Menu Button</strong></p>
<p>Drop down to access frequently access browser actions like preferences, print options, edit etc. To replace standard browser tool bar. (Inspired from firefox/opera)</p>
<p><img title="Firefox Opera Menu Buttons" src="http://img.a4apphack.com/browserconcept-main1-cffoperamenubtns.jpg" border="0" alt="Firefox Opera Menu Buttons" width="336" height="190" /></p>
<p><strong>2. Extension Button<br />
</strong></p>
<p>Displays drop down that contains icons of the extensions to activate/deactivate them, or displays extensions options in sub-menus. Does not consume your address bar space as used to in firefox or previous chrome version. (Inspired from Chromium resizable bar that displays extension icons)</p>
<p><img class="alignnone" title="Chromium Resizable Extension Icons Bar" src="http://img.a4apphack.com/browserconcept-main02-chromeextnsdropdown.jpg" alt="Chromium Resizable Extension Icons Bar" width="336" height="269" /></p>
<p><strong>3. Bookmarks Button</strong></p>
<p>Displays organized bookmarks in dropdown, no more bookmarks bar &#8211; (Can be created in firefox by customize options for toolbar)</p>
<p><img class="alignnone" title="Firefox Bookmarks Button" src="http://img.a4apphack.com/browserconcept-main03-firefoxbookmarksbtn.jpg" alt="Firefox Bookmarks Button" width="437" height="399" /></p>
<p><strong>4. Only Favicons in tab title</strong></p>
<p>We just need favicons to know which tab is what. Most of the websites have favicon now-a-days (Inspired from faviconize tab firefox extension/pin tabs/app tabs)</p>
<p><img class="alignnone" title="Chrome Pin Tabs/Web Apps Icon" src="http://img.a4apphack.com/browserconcept-main04-chromepintabs.jpg" alt="Chrome Pin Tabs/Web Apps Icon" width="575" height="124" /></p>
<p><strong>5. Tabs that behaves like Dock/Taskbar icons in OSX/Win7</strong></p>
<div class="wp-caption alignnone" style="width: 610px"><img class="" title="Switch Pages from same site with hover preview" src="http://img.a4apphack.com/browserconcept-hoverpreview.jpg" alt="Hover Preview" width="600" height="248" /><p class="wp-caption-text">MOCKUP - Switch pages from same site with hover preview</p></div>
<p>One favicon displayed for one domain/website. Its like transformation from Win XP quicklauch to Win7 Taskbar. 2 pages from Facebook are to be indicated by one tab and should allow user to switch over the pages from that single Facebook icon displayed. For example, hovering over the icon should display preview of different pages open from that same site. So this keeps the number of tabs open in the browser under control. (Inspired from OSX dock/Win7 Peek).</p>
<p><img class="alignnone" title="Win7 Taskbar Peek" src="http://img.a4apphack.com/browserconcept-main05-win7peek.jpg" alt="Win7 Taskbar Peek" width="479" height="263" /></p>
<p><strong>6. Tab Sets/Groups</strong></p>
<p>Tabs should be grouped to different sets and only those tabs belonging to that set should be visible on the browser window. This gives us distraction free environment. We should be able to move the tabs across the tabset by drag-n-drop (Inspired by Opera Tab Sets/Firefox Panorama)</p>
<p><strong>Example</strong> -</p>
<ul>
<li>SOCIAL Set &#8211; Facebook, Twitter, LinkedIn etc</li>
<li>WORK Set &#8211; Stackoverflow, Superuser, Dev Forums etc</li>
<li>FUN Set &#8211; Youtube, Failblog etc</li>
</ul>
<p><img title="Opera Tab Sets" src="http://img.a4apphack.com/browserconcept-main06-operatabsets.jpg" alt="Opera Tab Sets" width="276" height="156" /></p>
<p><strong>7. DropZone for Downloads</strong></p>
<p>We don&#8217;t need a separate downloads window to keep track of our downloads.  All we need is a small icon which displays the status of our downloads and should reveal the items downloaded only when required. So idea is to click on that dropzone icon to pop up a stack which displays the downloaded items/in progress ones. Another feature we would want is to be able to drag and drop the target URLs directly to the dropzone to start the download to the default downloads folder. (Inspired from Download statusbar firefox extensions/ flashget)</p>
<p><em>Check the Mockup</em></p>
<p><strong>8. Semi Transparent Status Bar to display full URL (Autohides)</strong></p>
<p>Status bar displays only when we hover over any link (Inspired from Chrome)</p>
<p><img class="alignnone" title="Chrome Status Bar" src="http://img.a4apphack.com/browserconcept-main08-chromestatusbar.jpg" alt="Chrome Status Bar" width="338" height="278" /></p>
<p><strong>9. Unload the tabs on demand/Not all tabs are loaded during browser start</strong></p>
<p>Some of the websites sends Ajax request continually load the time based dynamic content every n seconds even if the page is not active. For examples gmail syncs with the server to check for new email and there might be different apps that does the same. But we might not want gmail to do so and we dont want to close the tab either. So the solution is to unload the tab and activate/load it only when required. This happens during browser start as well, we load only the last tab this significantly increase browser startup time. (Inspired from <a title="Bartab Firefox Addon" href="https://addons.mozilla.org/en-US/firefox/addon/bartab/">Bartab</a> Firefox addon)</p>
<p><img title="Firefox With Bartab" src="http://img.a4apphack.com/browserconcept-main9-firefoxbartab.jpg" alt="Firefox With Bartab" width="600" height="221" /></p>
<p><strong>10. Mouse Gesture Support</strong></p>
<p>Less keystrokes &#8211; More usable browsers will be. Built-in support for mouse gestures. (Inspired by <a title="FireGestures Firefox Addon" href="https://addons.mozilla.org/en-US/firefox/addon/firegestures/">FireGestures</a> Firefox addon and <a title="Chrome Gestures Extension" href="https://chrome.google.com/extensions/detail/jpkfjicglakibpenojifdiepckckakgk">Chrome Gestures</a> addon in Chrome)</p>
<p><img class="alignnone" title="Chrome Gestures" src="http://img.a4apphack.com/browserconcept-main10-chromemousegesture.jpg" alt="Chrome Gestures" width="509" height="338" /></p>
<p><strong>11. Sync &#8216;Everything&#8217;</strong></p>
<p>Every time you do a fresh install of your favorite browser anywhere, you have to spend hours to customize it. Do it at home and you repeat all again at work, or on your new laptop. All browsers should have built-in capabilities to sync preferences, extensions, bookmarks, and everything to ensure that user doesn&#8217;t even notice any change if browses at home or at work. He should be given options to create profile and sync those at work or home. (Inspired from Firefox weave, built-in with Firefox 4 though)</p>
<p><img title="Firefox Sync" src="http://img.a4apphack.com/browserconcept-main11-firefoxsync.jpg" alt="Firefox Sync" width="600" height="440" /></p>
<h3><strong><span style="text-decoration: underline;">New Tab/ Hidden Address Bar</span></strong></h3>
<div class="wp-caption alignnone" style="width: 610px"><strong><strong><img title="New Tab Popup" src="http://img.a4apphack.com/browserconcept-newtab.jpg" alt="New Tab Popup" width="600" height="207" /></strong></strong><p class="wp-caption-text">MOCKUP - New Tab Popup</p></div>
<p><strong> </strong></p>
<p><strong>1. Pops-up on demand</strong></p>
<p>Address bar consumes unnecessary space of our precious screen real estate. We need address bar only when we access a new page so why should it be visible all the time? Clicking on the newtab icon displays a popup that has a tiny address bar. This is like a omnibar/awesomebar which means single box to accept URL as well as search string. (Inspired from AppPanel enabled using startup switch in Chrome).</p>
<p><img class="alignnone" title="Chrome App Panel" src="http://img.a4apphack.com/browserconcept-newtab1-chromeapppanel.jpg" alt="Chrome App Panel" width="593" height="110" /></p>
<p><strong>2. Search Site</strong></p>
<p>Below the address bar are the favicons of the currently open tabs. Example, select the icon of twitter then enter the search term to search twitter for something. Reduces many steps this way.</p>
<p><strong>3. Top Sites (Starred)</strong></p>
<p>Few starred sites/frequently used sites (may be top 10) are displayed in drop down when the Star icon is clicked. So open these sites with a click (Most visited in Chrome, Top Sites in Safari)</p>
<p><img class="alignnone" title="Safari Top Sites" src="http://img.a4apphack.com/browserconcept-newtab3-safaritopsites.jpg" alt="Safari Top Sites" width="602" height="394" /></p>
<h3><span style="text-decoration: underline;">Tab Grid</span></h3>
<p>A new perspective to our usual browsing experience. This displays preview of currently opened tabs in a grid, tabs can be easily identified/switched to from here. We should be able to close the tabs with a click without switching back to the page.</p>
<div class="wp-caption alignnone" style="width: 610px"><img title="Tab Grid" src="http://img.a4apphack.com/browserconcept-tgrid.jpg" alt="Tab Grid" width="600" height="454" /><p class="wp-caption-text">MOCKUP - Tab Grid</p></div>
<p><strong>1. New Tab from Grid</strong></p>
<p>This is the best part, we can create tabs by just entering the address of the page you want to access from the grid itself. Example &#8211; create tabs for Google reader/ Gmail or any site instantaneously and let it load when you are still in the grid. So in future grid enables user to quickly create and open multiple tabs. (Inspired from IE in Win7 mobile)</p>
<p><strong>2. Switch Tabsets from Grid</strong></p>
<p>Click on the tabset button to preview the tabs belonging to that set. Easily drag and drop the tabs to different sets from the Grid as well. (Inspired from Firefox Panorama/OSX Expose)</p>
<p><img class="alignnone" title="Firefox Panorama" src="http://img.a4apphack.com/browserconcept-tabgrid2-firefoxpanaroma.jpg" alt="Firefox Panorama" width="612" height="458" /></p>
<ul>
<li>Counter on Panorama feature &#8211; This feature in Firefox will become little complex and unmanageable after opening maybe 30 tabs (or on laptop screens). We will end up in have 10 or 15 tab piles. But the method mentioned in this article lets users to manage tabs on that tab set and does not display all the tabs in all the sets.</li>
</ul>
<p><strong>3. Open New Page of Opened Tab</strong></p>
<p>List of opened tabs displayed in the Grid, click on it to clone the site to a different page.</p>
<h2>Conclusion</h2>
<p>Like the term &#8216;Tabs&#8217; which is now a standard in all the browser, we expect the ideas mentioned in the post to be integral part of every browser. Let the users have seamless browser switch if the opt for. So in future, users should consider the parameters like speed, stability, performance to let them decide on the chosen and not just the UI based influences.</p>
<p><strong>Mockups Below For Reference</strong></p>
<div class="wp-caption alignnone" style="width: 260px"><a href="http://img.a4apphack.com/browserconcept-main.jpg" rel="lightbox[2013]" title="Main Screen"><img class="" title="Main Screen" src="http://img.a4apphack.com/browserconcept-main.jpg" alt="Main Screen" width="250" height="203" /></a><p class="wp-caption-text">Main Screen - Click over image to zoom</p></div>
<div class="wp-caption alignnone" style="width: 260px"><a href="http://img.a4apphack.com/browserconcept-hoverpreview.jpg" rel="lightbox[2013]" title="Switch pages from same site with hover preview"><img class="" title="Switch pages from same site with hover preview" src="http://img.a4apphack.com/browserconcept-hoverpreview.jpg" alt="Switch pages from same site with hover preview" width="250" height="103" /></a><p class="wp-caption-text">Hover Preview</p></div>
<div class="wp-caption alignnone" style="width: 260px"><a href="http://img.a4apphack.com/browserconcept-newtab.jpg" rel="lightbox[2013]" title="New Tab Popup"><img class="" title="New Tab Popup" src="http://img.a4apphack.com/browserconcept-newtab.jpg" alt="New Tab Popup" width="250" height="86" /></a><p class="wp-caption-text">New Tab Popup</p></div>
<div class="wp-caption alignnone" style="width: 260px"><a href="http://img.a4apphack.com/browserconcept-tgrid.jpg" rel="lightbox[2013]" title="Tab Grid"><img class="" title="Tab Grid" src="http://img.a4apphack.com/browserconcept-tgrid.jpg" alt="Tab Grid" width="250" height="189" /></a><p class="wp-caption-text">Tab Grid</p></div>
<p>Please mention in comments if there are any features you would want to see in all the browsers or you deny on any of the idea mentioned.</p>
<p><em>Author of this post is familiar with different web browsers like IE 4 &#8211; 8, Now Defunct Netscape Navigator, Firefox (all versions), Opera, Chrome (all versions), Safari and many others. Has been evangelizing web browsers since 90s.</em></p>
<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=2013&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Default Secure Google Search for Firefox, Chrome and IE</title>
		<link>http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie</link>
		<comments>http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie#comments</comments>
		<pubDate>Mon, 24 May 2010 23:23:31 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[chrome]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[ie]]></category>
		<category><![CDATA[va]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1981</guid>
		<description><![CDATA[Google has launched Secure Google search hosted on SSL lately . This post talks on how to enable this Secure Google search to the browser search bar/search suggestions in Firefox, Chrome and IE browsers. Updated: Added Screenshots for IE 1. Firefox Go to the Mozilla Addons Page and add Google SSL Search Plugin Select &#8216;Start [...]]]></description>
			<content:encoded><![CDATA[<p>Google has launched Secure Google search hosted on SSL lately . This post talks on how to enable this Secure Google search to the browser search bar/search suggestions in Firefox, Chrome and IE browsers.</p>
<p><span style="color: #800000;"><em><strong>Updated: Added Screenshots for IE</strong></em></span></p>
<h3>1. Firefox</h3>
<p>Go to the Mozilla Addons Page and add <a title="Google SSL Search" href="https://addons.mozilla.org/en-US/firefox/addon/google-ssl-search/">Google SSL Search</a> Plugin</p>
<p><img title="Google  SSL Search in Firefox" src="http://img.a4apphack.com/googlessl-firefox1.jpg" alt="Google SSL Search in Firefox" width="270" height="92" /></p>
<p>Select &#8216;Start using it right away in the dialog box that displays &#8211; Add &#8220;Google SSL&#8221; to the list of engines available in the search bar?</p>
<p><img title="Make  Default in Firefox" src="http://img.a4apphack.com/googlessl-firefox2.jpg" alt="Make Default in Firefox" width="403" height="197" /></p>
<h3>2. Chrome</h3>
<p>Right Click on Chrome Omnibar(Address bar) and Select &#8216;Edit Search Engines&#8217;.</p>
<p><img title="Edit  Search Engines in Chrome" src="http://img.a4apphack.com/googlessl-chrome1.jpg" alt="Edit Search Engines in Chrome" width="502" height="181" /></p>
<p>In the Edit Search Engines Dialog box add <a title="https://www.google.com/searchq=%s" href="https://www.google.com/searchq=%s"><strong>https://www.google.com/search?q=%s</strong></a> in the URL field and click on Make Default Button.</p>
<p><img class="alignnone" title="Add Google SSL in Chrome" src="http://img.a4apphack.com/googlessl-chrome2.jpg" alt="Add Google SSL in Chrome" width="449" height="365" /></p>
<p>Dont forget to check the Chrome Extensions List for Security Testers, <a title="here" href="http://a4apphack.com/index.php/featured/13-chrome-extensions-for-security-testers">here</a> (Internal Post)</p>
<p><strong>3. Internet Explorer</strong></p>
<ul>
<li>Access the <a title="Add Search Providers to Internet Explorer" href="http://www.microsoft.com/windows/ie/searchguide/en-en/default.mspx">Add Search Providers page</a></li>
</ul>
<ul>
<li>In the Create Your Own enter <a href="https://www.google.com/search?q=TEST"><strong>https://www.google.com/search?q=TEST</strong></a> in the URL field</li>
</ul>
<p style="padding-left: 30px;"><img class="alignnone" title="Add Google SSL in IE" src="http://img.a4apphack.com/googlessl-ie1.jpg" alt="Add Google SSL in IE" width="313" height="326" /></p>
<p>Click on the Install Button to see the following screen. Check the &#8216;Make this my default search provider&#8217;</p>
<p style="padding-left: 30px;"><img class="alignnone" title="Google SSL IE Add Screen" src="http://img.a4apphack.com/googlessl-ie2.jpg" alt="Google SSL IE Add Screen" width="397" height="271" /></p>
<p>Now the Search box in IE will display Google.</p>
<p style="padding-left: 30px;"><img class="alignnone" title="Google SSL Installed in IE8" src="http://img.a4apphack.com/googlessl-ie3.jpg" alt="Google SSL Installed in IE8" width="303" height="90" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p>via <a title="Search more securely with encrypted Google web search" href="http://googleblog.blogspot.com/2010/05/search-more-securely-with-encrypted.html">Google Blog</a> and <a title="TechDows" href="http://techdows.com/2010/05/make-google-ssl-search-as-the-default-search-engines-in-firefox-chrome-and-internet-explorer.html">TechDows</a></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1981&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Pendule &#8211; WebDeveloper Equivalent In Chrome For Security Analysts</title>
		<link>http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts</link>
		<comments>http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts#comments</comments>
		<pubDate>Thu, 11 Feb 2010 23:38:16 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[chrome]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[passwords]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1690</guid>
		<description><![CDATA[Chrome is becoming popular among the developers due to its extended support for the upcoming web technologies. If these features of chrome can help the developers to dissect &#38; analyse the newest web applications, so can it for security analysts. Firefox has become so popular among the security guys due to the availability of addons like WebDeveloper/Firebug which can [...]]]></description>
			<content:encoded><![CDATA[<p>Chrome is becoming popular among the developers due to its extended support for the upcoming web technologies. If these features of chrome can help the developers to dissect &amp; analyse the newest web applications, so can it for security analysts. Firefox has become so popular among the security guys due to the availability of addons like WebDeveloper/Firebug which can aid them during their security assessments.</p>
<p>The extension Pendule is an attempt to reproduce the features of WebDeveloper Addon for firefox. Currently it doesn&#8217;t support all the features of WebDeveloper but expected to incorporate soon.</p>
<div class="wp-caption alignnone" style="width: 610px"><a title="Pendule - Chrome Extension" href="http://img.a4apphack.com/pendule-main.jpg" rel="lightbox[1690]"><img class="" title="Pendule Chrome Extension" src="http://img.a4apphack.com/pendule-main.jpg" alt="Pendule Chrome Extension" width="600" height="270" /></a><p class="wp-caption-text">Pendule - Chrome Extension</p></div>
<h3><strong>Features</strong></h3>
<p>1. Form Manipulations</p>
<div id="_mcePaste">
<ul>
<li>Show passwords – shows the contents of password fields.</li>
<li>Select tags to text inputs – converts select elements to text inputs.</li>
<li>Remove maxlength – removes maxlength restrictions from inputs.</li>
<li>Clear radio buttons – clears all radio buttons.</li>
</ul>
</div>
<p>2. View Javascripts</p>
<p>3. Show Image Paths Inline</p>
<p><strong>Download Pendule:</strong> <a target="_blank" href="https://chrome.google.com/extensions/detail/gbkffbkamcejhkcaocmkdeiiccpmjfdi"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1690&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Subscribe to SecFox &#8211; Firefox Addon Collections</title>
		<link>http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections</link>
		<comments>http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections#comments</comments>
		<pubDate>Wed, 13 Jan 2010 19:29:34 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[appsec]]></category>
		<category><![CDATA[Secfox]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1630</guid>
		<description><![CDATA[Stay updated with addons discussed in the SecFox series, the most popular section of this blog. For that you need to subscribe to the SecFox addon collection available in the mozilla addons site. SecFox is collection of addons which can be used to customize any firefox to a security assessment tool. At the time of [...]]]></description>
			<content:encoded><![CDATA[<p>Stay updated with addons discussed in the <a title="SecFox Series" href="http://a4apphack.com/index.php/tag/secfox">SecFox series</a>, the most popular section of this blog. For that you need to subscribe to the SecFox addon collection available in the mozilla addons site.</p>
<p>SecFox is collection of addons which can be used to customize any firefox to a security assessment tool. At the time of writing this collection has 40+ addons which can help the web app sec testers during their assessments.</p>
<p><span id="more-1630"></span>An &#8216;<a title="Add-on Collector" href="https://addons.mozilla.org/en-US/firefox/pages/collector">addon collector</a>&#8216; addon is to be installed to get the SecFox updates. So if any new addon added to SecFox collection gives an alert to the subscriber.</p>
<p>Check the video below which explains how.</p>
<p><object type="application/x-shockwave-flash" style="width:600px;height:440px" data="http://www.youtube.com/v/mzryNGYmvjg&amp;hl=en&amp;fs=1"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="quality" value="best" /><param name="wmode" value="transparent" /><param name="movie" value="http://www.youtube.com/v/mzryNGYmvjg&amp;hl=en&amp;fs=1" /><param name="pluginspage" value="http://www.macromedia.com/go/getflashplayer" />If you can see this, then you might need a Flash Player upgrade or you need to install Flash Player if it's missing. Get <a href="http://get.adobe.com/flashplayer/" target="_blank">Flash Player</a> from Adobe.</object><br/>
		<!-- Valid XHTML flash object delivered by XHTML Video Embed. Get it at: http://saltwaterc.net/xhtml-video-embed -->
		</p>
<p><strong>Download Secfox Collection :</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/collection/secfox"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1630&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<series:name><![CDATA[Secfox]]></series:name>
	</item>
		<item>
		<title>Secfox &#8211; Addons for Cookie Analysis And Manipulation</title>
		<link>http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation</link>
		<comments>http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation#comments</comments>
		<pubDate>Wed, 16 Dec 2009 19:57:00 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[access]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[Secfox]]></category>
		<category><![CDATA[youtube]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1604</guid>
		<description><![CDATA[In this part of the Secfox series, we will be discussing about the addons that can help us during the app security assessments which involves cookie analysis and manipulation. These addons can be of huge help when we perform the type of tests mentioned below. Cookie Prediction Session Fixation Cookie Persistence/Expiration Broken Session Management Traditional Method [...]]]></description>
			<content:encoded><![CDATA[<p>In this part of the Secfox series, we will be discussing about the addons that can help us during the app security assessments which involves cookie analysis and manipulation.</p>
<p>These addons can be of huge help when we perform the type of tests mentioned below.</p>
<ul>
<li>Cookie Prediction</li>
<li>Session Fixation</li>
<li>Cookie Persistence/Expiration</li>
<li>Broken Session Management</li>
</ul>
<h3>Traditional Method</h3>
<p>We use a proxy interceptor like Paros/Burp/WebScarab to trap the HTTP requests and modify the values during its transit. For this to happen, we need to setup a proxy and ensure that it listens to the browser traffic. An additional step is required if the application uses an SSL connection, i.e. to store the Proxy&#8217;s forged certificate in the browser. The intercepted request enables us to add new cookies or modify the existing ones. We can also check when exactly are the cookie values issued and whether it is getting flushed upon session expiration.</p>
<h3>Usage of Addons</h3>
<p>We have various addons for firefox which makes the tasks mentioned above easier. Certain addons allow to view the cookies stored in the browser and others allows us to edit it. The advantage &#8211; we don&#8217;t need any proxy to do this job, we can view/edit from the browser itself.</p>
<p><strong>1. View Cookies</strong></p>
<p>This addon adds a tab in the &#8216;Page Info&#8217; box available on the Firefox context menu.</p>
<div class="wp-caption alignnone" style="width: 610px"><a title="View Cookies Addon" href="http://img.a4apphack.com/secfox-cookiemanip-viewcookie.jpg" rel="lightbox[1604]"><img class="" title="View Cookies Addon" src="http://img.a4apphack.com/secfox-cookiemanip-viewcookie.jpg" alt="View Cookies Addon" width="600" height="422" /></a><p class="wp-caption-text">View Cookies Addon</p></div>
<p><strong>Download Link:</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/315"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<hr />
<p><strong>2. Add N Edit Cookies</strong></p>
<p>This addon integrates a Cookie Editor to firefox. This also allows us to edit the attributes of the cookie.</p>
<div class="wp-caption alignnone" style="width: 360px"><a title="Add n Edit Cookies Addon" href="http://img.a4apphack.com/secfox-cookiemanip-addnedit.jpg" rel="lightbox[1604]"><img class="" title="Add n Edit Cookies Addon" src="http://img.a4apphack.com/secfox-cookiemanip-addnedit.jpg" alt="Add n Edit Cookies Addon" width="350" height="257" /></a><a href="http://img.a4apphack.com/secfox-cookiemanip-addnedit.jpg"></a><p class="wp-caption-text">Add n Edit Cookies Addon</p></div>
<p><strong>Download Link:</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/13793"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<p><span id="more-1604"></span></p>
<hr />
<p>3. <strong>FireCookie</strong></p>
<p>If you are using Firebug a lot, then cookies are easily accessible inside firebug tabs if you have FireCookie installed.</p>
<div class="wp-caption alignnone" style="width: 610px"><a title="FireCookie Addon" href="http://img.a4apphack.com/secfox-cookiemanip-firecookie.jpg" rel="lightbox[1604]"><img class="" title="FireCookie Addon" src="http://img.a4apphack.com/secfox-cookiemanip-firecookie.jpg" alt="FireCookie Addon" width="600" height="165" /></a><p class="wp-caption-text">FireCookie Addon</p></div>
<p><strong>Download Link:</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/6683"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<hr />
<p><strong>4. Cookie Swap</strong></p>
<p>This is an amazing addon which helps us to switch between various cookie profiles. This addon saves all the cookies for a particular domain to the chosen profile. These profiles can be managed through a Profile Manager which comes with the tool. One can add and organize the profile which can be easily swapped from the Firefox status bar. This is of great use if you are testing the application which has multiple login credentials.</p>
<div class="wp-caption alignnone" style="width: 410px"><a title="Cookie Swap - Status Bar" href="http://img.a4apphack.com/secfox-cookiemanip-cookieswap.jpg" rel="lightbox[1604]"><img class="" title="Cookie Swap - Status Bar" src="http://img.a4apphack.com/secfox-cookiemanip-cookieswap.jpg" alt="Cookie Swap - Status Bar" width="400" height="226" /></a><p class="wp-caption-text">Cookie Swap - Status Bar</p></div>
<div class="wp-caption alignnone" style="width: 360px"><a title="Cookie Swap - Manage Profiles" href="http://img.a4apphack.com/secfox-cookiemanip-cookieswapmanage.jpg" rel="lightbox[1604]"><img class="" title="Cookie Swap - Manage Profiles" src="http://img.a4apphack.com/secfox-cookiemanip-cookieswapmanage.jpg" alt="Cookie Swap - Manage Profiles" width="350" height="239" /></a><p class="wp-caption-text">Cookie Swap - Manage Profiles</p></div>
<p><strong>Download Link: </strong><a target="_blank" href="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<hr />
<p><strong>5. WebDeveloper &#8211; View Cookies</strong></p>
<p>Web developer has a built-in cookie viewer and editor. Once you select on &#8216;View Cookies&#8217; available under the &#8216;Cookies&#8217; menu, a new tab is displayed with a big list of cookies for that particular domain and options to edit it. I prefer using &#8216;Add n Edit Cookie&#8217; to this addon.</p>
<div class="wp-caption alignnone" style="width: 510px"><a title="WebDeveloper - View Cookies" href="http://img.a4apphack.com/secfox-cookiemanip-webdeveloper.jpg" rel="lightbox[1604]"><img class="" title="WebDeveloper - View Cookies" src="http://img.a4apphack.com/secfox-cookiemanip-webdeveloper.jpg" alt="WebDeveloper - View Cookies" width="500" height="316" /></a><p class="wp-caption-text">WebDeveloper - View Cookies</p></div>
<p><strong>Download Link:</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/60"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<hr />
<h3>Video Demo</h3>
<p>Watch the following video. Here, I quickly go through each of the addon I&#8217;d mentioned above.</p>
<p><object type="application/x-shockwave-flash" style="width:600px;height:440px" data="http://www.youtube.com/v/5i4aXl7vx_g&amp;hl=en&amp;fs=1"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="quality" value="best" /><param name="wmode" value="transparent" /><param name="movie" value="http://www.youtube.com/v/5i4aXl7vx_g&amp;hl=en&amp;fs=1" /><param name="pluginspage" value="http://www.macromedia.com/go/getflashplayer" />If you can see this, then you might need a Flash Player upgrade or you need to install Flash Player if it's missing. Get <a href="http://get.adobe.com/flashplayer/" target="_blank">Flash Player</a> from Adobe.</object><br/>
		<!-- Valid XHTML flash object delivered by XHTML Video Embed. Get it at: http://saltwaterc.net/xhtml-video-embed -->
		</p>
<p>Stay tuned&#8230; Secfox will continue&#8230;.</p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1604&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<series:name><![CDATA[Secfox]]></series:name>
	</item>
		<item>
		<title>Secfox &#8211; GroundSpeed, Client Side Data Manipulation From Sidebar</title>
		<link>http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away</link>
		<comments>http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away#comments</comments>
		<pubDate>Tue, 15 Dec 2009 00:57:17 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[Secfox]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1593</guid>
		<description><![CDATA[Pen testers fondly use webproxy a lot to manipulate the HTTP requests created by the browser before it is sent to the web sever. This helps us to verify the the absence of any server side validations or flaw in the client side validations. But feel lucky if you are using Firefox while performing web [...]]]></description>
			<content:encoded><![CDATA[<div>
<p>Pen testers fondly use webproxy a lot to manipulate the HTTP requests created by the browser before it is sent to the web sever. This helps us to verify the the absence of any server side validations or flaw in the client side validations. But feel lucky if you are using Firefox while performing web app security assessments, &#8217;cause we have a cool extension &#8216;GroundSpeed&#8217; which exactly does that.</p>
<p>I dont want to blabber much on describing how it works since the author has a nice writeup in his GroundSpeed homepage.</p>
<blockquote><p>&#8220;Groundspeed is an open-source Firefox extension that manipulates the interface of web applications in order to make the life of the security tester easier. It allows security testers to manipulate the way they interact with the web application’s user interface by manipulating the forms and form elements, eliminating annoying limitations and client-side controls.</p>
<p>Some of the practical uses of Groundspeed include changing the types of form fields, like for example changing hidden fields into text fields, removing size and length limitations on input fields and modifying any JavaScript event handlers to bypass client side validation.</p>
<p>Groundspeed works by dynamically modifying the Document Object Model (DOM) of the page after Firefox has finished loading and rendering it. The changes take effect immediately and, since it happens entirely on the client side without generating new requests to the server, it is completely transparent to the application.&#8221;</p>
</blockquote>
<p><span id="more-1593"></span></p>
<p><strong>Check the video</strong></p>
<p><object type="application/x-shockwave-flash" style="width:600px;height:440px" data="http://www.vimeo.com/moogaloop.swf?clip_id=7465799&amp;server=www.vimeo.com&amp;show_title=1&amp;show_byline=1&amp;show_portrait=0"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="quality" value="best" /><param name="wmode" value="transparent" /><param name="movie" value="http://www.vimeo.com/moogaloop.swf?clip_id=7465799&amp;server=www.vimeo.com&amp;show_title=1&amp;show_byline=1&amp;show_portrait=0" /><param name="pluginspage" value="http://www.macromedia.com/go/getflashplayer" />If you can see this, then you might need a Flash Player upgrade or you need to install Flash Player if it's missing. Get <a href="http://get.adobe.com/flashplayer/" target="_blank">Flash Player</a> from Adobe.</object><br/>
		<!-- Valid XHTML flash object delivered by XHTML Video Embed. Get it at: http://saltwaterc.net/xhtml-video-embed -->
		</p>
<p><strong>Conclusion</strong></p>
<p>Whatever GroundSpeed can do can be done with Firebug, but this makes life super easy. We might tend to mess the HTML code displayed in the firebug window. But with GroundSpeed, we exactly achieve want we want. Another advantage of this addon compared to firebug is that this helps us to minimize the time wasted in searching for the variable names and the attributes which we intend to change if we had used Firebug.</p>
<p>As the author quotes, Firebug is meant for Developers and GroundSpeed for PenTesters. We hope that there will be many enhancements in the future so as to make this a full fledged PenTest addon.</p>
<h3>Gallery</h3>
<div class="wp-caption alignnone" style="width: 260px"><a title="GroundSpeed Conversions" href="http://img.a4apphack.com/groundspeed-conversions.png" rel="lightbox[1593]"><img class="" title="GroundSpeed Conversions" src="http://img.a4apphack.com/groundspeed-conversions.png" alt="GroundSpeed Conversions" width="250" height="459" /></a><p class="wp-caption-text">GroundSpeed Conversions</p></div>
<div class="wp-caption alignnone" style="width: 260px"><a title="GroundSpeed Conversions" href="http://img.a4apphack.com/groundspeed-removelength.jpg" rel="lightbox[1593]"><img class="" title="GroundSpeed - Remove Max Length" src="http://img.a4apphack.com/groundspeed-removelength.jpg" alt="GroundSpeed - Remove Max Length" width="250" height="168" /></a><p class="wp-caption-text">GroundSpeed - Remove Max Length</p></div>
<p><br class="spacer_" /></p>
<p><strong>Install GroundSpeed Firefox Addon:</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/46698"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<p><br class="spacer_" /></p>
<p><a href="http://groundspeed.wobot.org/"><img class="alignnone" title="GroundSpeed Logo" src="http://img.a4apphack.com/groundspeed-logo.jpg" alt="" width="188" height="50" /></a></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
</div>
<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1593&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<series:name><![CDATA[Secfox]]></series:name>
	</item>
		<item>
		<title>Make Your Firefox Truly Portable With Portable Gears</title>
		<link>http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears</link>
		<comments>http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears#comments</comments>
		<pubDate>Tue, 15 Sep 2009 03:00:20 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Firefox]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[gears]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[Portable]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1438</guid>
		<description><![CDATA[Google Gears provides enhanced interactive functionality for websites designed to use it: drag-and-drop, client-side database storage, and the ability to view and work with specially prepared websites when offline (not connected to the Internet). Now-a-days most of the feature rich sites interact with the Gears installed in the PC and makes our browsing experience better. [...]]]></description>
			<content:encoded><![CDATA[<p>Google Gears provides enhanced interactive functionality for websites designed to use it: drag-and-drop, client-side database storage, and the ability to view and work with specially prepared websites when offline (not connected to the Internet).</p>
<p>Now-a-days most of the feature rich sites interact with the Gears installed in the PC and makes our browsing experience better. But what if we frequently switch our PCs and use portable version of Firefox! what if we dont have admin privileges in the PC we are currently working with? Gears Portable Addon can save our day.</p>
<p><span id="more-1438"></span></p>
<p>This add-on is an unmodified repackaging of Google&#8217;s binaries via the official Windows installer/updater. (In other words, it&#8217;s the official releases, simply ZIP&#8217;d into an XPI file.)</p>
<h3>Installation</h3>
<ol>
<li>Download and install <a title="Mozilla Addons - Google Gears Portable" href="https://addons.mozilla.org/en-US/firefox/addon/13492">Google Gears Portable</a> (This is an experimental addon so check &#8216;<strong>Let me install this experimental add-on</strong>&#8216; to install this addon <a href="http://img.a4apphack.com/gearsport-addoninstall.jpg" rel="lightbox[1438]" title="Gears Addon Install"><img title="Gears Addon Install" src="http://img.a4apphack.com/gearsport-addoninstall.jpg" alt="" width="513" height="269" /></a></li>
<li>Restart your firefox. </li>
<li>Go to the site you want to enable Gears and click on the Gears icon.</li>
<li>As shown in the below screenshot Allow the Gears Access. </li>
<p><a href="http://img.a4apphack.com/gearsport-allowgears.jpg" rel="lightbox[1438]" title="Allow Gears"><img class="alignnone" title="Allow Gears" src="http://img.a4apphack.com/gearsport-allowgears.jpg" alt="" width="379" height="267" /></a></p>
</ol>
<p><strong>Download Gears Portable :</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/13492"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1438&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk: basic
Page Caching using disk: enhanced (Requested URI is rejected)
Object Caching 1431/1490 objects using disk: basic

Served from: a4apphack.com @ 2012-05-22 08:59:20 -->
