<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:series="http://unfoldingneurons.com/"
	>

<channel>
	<title>a4apphack &#187; addons</title>
	<atom:link href="http://a4apphack.com/index.php/tag/addons/feed" rel="self" type="application/rss+xml" />
	<link>http://a4apphack.com</link>
	<description>Get more out of the Apps!</description>
	<lastBuildDate>Thu, 09 Sep 2010 06:44:34 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
<image>
<link>http://a4apphack.com</link>
<url>http://a4apphack.com/blog/wp-content/themes/primus/favicon.ico</url>
<title>a4apphack</title>
</image>
		<item>
		<title>Conceptualizing Next Gen Browser Experience</title>
		<link>http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience</link>
		<comments>http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience#comments</comments>
		<pubDate>Tue, 31 Aug 2010 07:13:45 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[chrome]]></category>
		<category><![CDATA[concept]]></category>
		<category><![CDATA[customize]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[icon]]></category>
		<category><![CDATA[ie]]></category>
		<category><![CDATA[inspire]]></category>
		<category><![CDATA[organize]]></category>
		<category><![CDATA[space]]></category>
		<category><![CDATA[sync]]></category>

		<guid isPermaLink="false">http://a4apphack.com/?p=2013</guid>
		<description><![CDATA[It is the revolution of web browsers; they rule internet now. Browsers have evolved so much from what we had seen during the days of IE6. Now Firefox, Chrome, Opera, IE are on war to prove who is the best. They try different ways to win the heart of users; Firefox took a great leap [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/2013.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>It is the revolution of web browsers; they rule internet now. Browsers have evolved so much from what we had seen during the days of IE6. Now Firefox, Chrome, Opera, IE are on war to prove who is the best. They try different ways to win the heart of users; Firefox took a great leap by introducing the &#8216;panaroma&#8217; feature &#8211; focus on multitasking, chrome gets appreciation for its fluid design &#8211; focus on simplicity &amp; ease of use, Opera and IE has browser stability on priority &#8211; focus on robustness.</p>
<p><br class="spacer_" /></p>
<p>During this evolution, some browsers tries to standout from others by introducing a new feature which had never been available in any of their counterparts. But the other browsers instead wait for the users comments on the new feature implemented, if appreciated, they implement the same feature in theirs, may be in a better way. The browser who introduced that feature first might even loose its credit in due course. User is forced to switch from their  favorite browser for a &#8216;single feature&#8217; they found useful in the &#8216;other&#8217; browser. Once they completely switch and get used to the new browser, the old one brings out the same feature plus few bonus features. This cycle never ends. Firefox introduced tabs and extensions when IE did not have in them, people were attracted to it and finally switched to firefox. Then the light weight chrome came with Tab tearing, web apps, new tab page with speed dial and many other features, made few users to make chrome as their default browser. Firefox then inherited few of chromes&#8217; features, syncing and expose like tab candy/panaroma effects. We don&#8217;t have to switch browsers just for UI features, and if at all we do, it should be seamless.</p>
<p><br class="spacer_" /></p>
<p>This article tries to identify best features in each of the browser and the features we expect to be part any modern browser. Here, we try to baseline few ideas, those ideas which takes browser design to the next level.</p>
<p><strong>Browser Main Screen (Mockup)</strong></p>
<div class="wp-caption alignnone" style="width: 610px"><strong><strong><img class="  " title="Browser Main Screen" src="http://img.a4apphack.com/browserconcept-main.jpg" alt="Browser Main Screen" width="600" height="487" /></strong></strong><p class="wp-caption-text">MOCKUP - Main Screen - Click over image to zoom</p></div>
<p><span id="more-2013"></span></p>
<h2>Highlights</h2>
<h3><span style="text-decoration: underline;">Main Screen</span></h3>
<p><strong>1. Menu Button</strong></p>
<p>Drop down to access frequently access browser actions like preferences, print options, edit etc. To replace standard browser tool bar. (Inspired from firefox/opera)</p>
<p><strong>2. Extension Button<br />
</strong></p>
<p>Displays drop down that contains icons of the extensions to activate/deactivate them, or displays extensions options in sub-menus. Does not consume your address bar space as used to in firefox or previous chrome version. (Inspired from Chromium resizable bar that displays extension icons)</p>
<p><img class=" alignnone" title="Chromium Resizable Extension Icons Bar" src="http://img.a4apphack.com/browserconcept-main02-chromeextnsdropdown.jpg" alt="Chromium Resizable Extension Icons Bar" width="336" height="269" /></p>
<p><strong>3. Bookmarks Button</strong></p>
<p>Displays organized bookmarks in dropdown, no more bookmarks bar &#8211; (Can be created in firefox by customize options for toolbar)</p>
<p><img class="alignnone" title="Firefox Bookmarks Button" src="http://img.a4apphack.com/browserconcept-main03-firefoxbookmarksbtn.jpg" alt="Firefox Bookmarks Button" width="437" height="399" /></p>
<p><strong>4. Only Favicons in tab title</strong></p>
<p>We just need favicons to know which tab is what. Most of the websites have favicon now-a-days (Inspired from faviconize tab firefox extension/pin tabs/app tabs)</p>
<p><img class="alignnone" title="Chrome Pin Tabs/Web Apps Icon" src="http://img.a4apphack.com/browserconcept-main04-chromepintabs.jpg" alt="Chrome Pin Tabs/Web Apps Icon" width="575" height="124" /></p>
<p><strong>5. Tabs that behaves like Dock/Taskbar icons in OSX/Win7</strong></p>
<div class="wp-caption alignnone" style="width: 610px"><img class=" " title="Switch Pages from same site with hover preview" src="http://img.a4apphack.com/browserconcept-hoverpreview.jpg" alt="Hover Preview" width="600" height="248" /><p class="wp-caption-text">MOCKUP - Switch pages from same site with hover preview</p></div>
<p>One favicon displayed for one domain/website. Its like transformation from Win XP quicklauch to Win7 Taskbar. 2 pages from Facebook are to be indicated by one tab and should allow user to switch over the pages from that single Facebook icon displayed. For example, hovering over the icon should display preview of different pages open from that same site. So this keeps the number of tabs open in the browser under control. (Inspired from OSX dock/Win7 Peek).</p>
<p><img class="alignnone" title="Win7 Taskbar Peek" src="http://img.a4apphack.com/browserconcept-main05-win7peek.jpg" alt="Win7 Taskbar Peek" width="479" height="263" /></p>
<p><strong>6. Tab Sets/Groups</strong></p>
<p>Tabs should be grouped to different sets and only those tabs belonging to that set should be visible on the browser window. This gives us distraction free environment. We should be able to move the tabs across the tabset by drag-n-drop (Inspired by Opera Tab Sets/Firefox Panorama)</p>
<p><strong>Example</strong> -</p>
<ul>
<li>SOCIAL Set &#8211; Facebook, Twitter, LinkedIn etc</li>
<li>WORK Set &#8211; Stackoverflow, Superuser, Dev Forums etc</li>
<li>FUN Set &#8211; Youtube, Failblog etc</li>
</ul>
<p><img title="Opera Tab Sets" src="http://img.a4apphack.com/browserconcept-main06-operatabsets.jpg" alt="Opera Tab Sets" width="276" height="156" /></p>
<p><strong>7. DropZone for Downloads</strong></p>
<p>We don&#8217;t need a separate downloads window to keep track of our downloads.  All we need is a small icon which displays the status of our downloads and should reveal the items downloaded only when required. So idea is to click on that dropzone icon to pop up a stack which displays the downloaded items/in progress ones. Another feature we would want is to be able to drag and drop the target URLs directly to the dropzone to start the download to the default downloads folder. (Inspired from Download statusbar firefox extensions/ flashget)</p>
<p><em>Check the Mockup</em></p>
<p><strong>8. Semi Transparent Status Bar to display full URL (Autohides)</strong></p>
<p>Status bar displays only when we hover over any link (Inspired from Chrome)</p>
<p><img class="alignnone" title="Chrome Status Bar" src="http://img.a4apphack.com/browserconcept-main08-chromestatusbar.jpg" alt="Chrome Status Bar" width="338" height="278" /></p>
<p><strong>9. Unload the tabs on demand/Not all tabs are loaded during browser start</strong></p>
<p>Some of the websites sends Ajax request continually load the time based dynamic content every n seconds even if the page is not active. For examples gmail syncs with the server to check for new email and there might be different apps that does the same. But we might not want gmail to do so and we dont want to close the tab either. So the solution is to unload the tab and activate/load it only when required. This happens during browser start as well, we load only the last tab this significantly increase browser startup time. (Inspired from <a title="Bartab Firefox Addon" href="https://addons.mozilla.org/en-US/firefox/addon/67651/">Bartab</a> Firefox addon)</p>
<p><strong>10. Mouse Gesture Support</strong></p>
<p>Less keystrokes &#8211; More usable browsers will be. Built-in support for mouse gestures. (Inspired by <a title="FireGestures Firefox Addon" href="https://addons.mozilla.org/firefox/addon/6366">FireGestures</a> Firefox addon and <a title="Chrome Gestures Extension" href="https://chrome.google.com/extensions/detail/jpkfjicglakibpenojifdiepckckakgk">Chrome Gestures</a> addon in Chrome)</p>
<p><img class="alignnone" title="Chrome Gestures" src="http://img.a4apphack.com/browserconcept-main10-chromemousegesture.jpg" alt="Chrome Gestures" width="509" height="338" /></p>
<p><strong>11. Sync &#8216;Everything&#8217;</strong></p>
<p>Every time you do a fresh install of your favorite browser anywhere, you have to spend hours to customize it. Do it at home and you repeat all again at work, or on your new laptop. All browsers should have built-in capabilities to sync preferences, extensions, bookmarks, and everything to ensure that user doesn&#8217;t even notice any change if browses at home or at work. He should be given options to create profile and sync those at work or home. (Inspired from Firefox weave, built-in with Firefox 4 though)</p>
<h3><strong><span style="text-decoration: underline;">New Tab/ Hidden Address Bar</span></strong></h3>
<div class="wp-caption alignnone" style="width: 610px"><strong><strong><img title="New Tab Popup" src="http://img.a4apphack.com/browserconcept-newtab.jpg" alt="New Tab Popup" width="600" height="207" /></strong></strong><p class="wp-caption-text">MOCKUP - New Tab Popup</p></div>
<p><strong> </strong></p>
<p><strong>1. Pops-up on demand</strong></p>
<p>Address bar consumes unnecessary space of our precious screen real estate. We need address bar only when we access a new page so why should it be visible all the time? Clicking on the newtab icon displays a popup that has a tiny address bar. This is like a omnibar/awesomebar which means single box to accept URL as well as search string. (Inspired from AppPanel enabled using startup switch in Chrome).</p>
<p><img class="alignnone" title="Chrome App Panel" src="http://img.a4apphack.com/browserconcept-newtab1-chromeapppanel.jpg" alt="Chrome App Panel" width="593" height="110" /></p>
<p><strong>2. Search Site</strong></p>
<p>Below the address bar are the favicons of the currently open tabs. Example, select the icon of twitter then enter the search term to search twitter for something. Reduces many steps this way.</p>
<p><strong>3. Top Sites (Starred)</strong></p>
<p>Few starred sites/frequently used sites (may be top 10) are displayed in drop down when the Star icon is clicked. So open these sites with a click (Most visited in Chrome, Top Sites in Safari)</p>
<p><img class="alignnone" title="Safari Top Sites" src="http://img.a4apphack.com/browserconcept-newtab3-safaritopsites.jpg" alt="Safari Top Sites" width="602" height="394" /></p>
<h3><span style="text-decoration: underline;">Tab Grid</span></h3>
<p>A new perspective to our usual browsing experience. This displays preview of currently opened tabs in a grid, tabs can be easily identified/switched to from here. We should be able to close the tabs with a click without switching back to the page.</p>
<div class="wp-caption alignnone" style="width: 610px"><img title="Tab Grid" src="http://img.a4apphack.com/browserconcept-tgrid.jpg" alt="Tab Grid" width="600" height="454" /><p class="wp-caption-text">MOCKUP - Tab Grid</p></div>
<p><strong>1. New Tab from Grid</strong></p>
<p>This is the best part, we can create tabs by just entering the address of the page you want to access from the grid itself. Example &#8211; create tabs for Google reader/ Gmail or any site instantaneously and let it load when you are still in the grid. So in future grid enables user to quickly create and open multiple tabs. (Inspired from IE in Win7 mobile)</p>
<p><strong>2. Switch Tabsets from Grid</strong></p>
<p>Click on the tabset button to preview the tabs belonging to that set. Easily drag and drop the tabs to different sets from the Grid as well. (Inspired from Firefox Panorama/OSX Expose)</p>
<p><img class="alignnone" title="Firefox Panorama" src="http://img.a4apphack.com/browserconcept-tabgrid2-firefoxpanaroma.jpg" alt="Firefox Panorama" width="612" height="458" /></p>
<ul>
<li>Counter on Panorama feature &#8211; This feature in Firefox will become little complex and unmanageable after opening maybe 30 tabs (or on laptop screens). We will end up in have 10 or 15 tab piles. But the method mentioned in this article lets users to manage tabs on that tab set and does not display all the tabs in all the sets.</li>
</ul>
<p><strong>3. Open New Page of Opened Tab</strong></p>
<p>List of opened tabs displayed in the Grid, click on it to clone the site to a different page.</p>
<h2>Conclusion</h2>
<p>Like the term &#8216;Tabs&#8217; which is now a standard in all the browser, we expect the ideas mentioned in the post to be integral part of every browser. Let the users have seamless browser switch if the opt for. So in future, users should consider the parameters like speed, stability, performance to let them decide on the chosen and not just the UI based influences.</p>
<p><strong>Mockups Below For Reference</strong></p>
<div class="wp-caption alignnone" style="width: 260px"><a href="http://img.a4apphack.com/browserconcept-main.jpg" rel="shadowbox[post-2013];player=img;" title="Main Screen"><img class=" " title="Main Screen" src="http://img.a4apphack.com/browserconcept-main.jpg" alt="Main Screen" width="250" height="203" /></a><p class="wp-caption-text">Main Screen - Click over image to zoom</p></div>
<div class="wp-caption alignnone" style="width: 260px"><a href="http://img.a4apphack.com/browserconcept-hoverpreview.jpg" rel="shadowbox[post-2013];player=img;" title="Switch pages from same site with hover preview"><img class=" " title="Switch pages from same site with hover preview" src="http://img.a4apphack.com/browserconcept-hoverpreview.jpg" alt="Switch pages from same site with hover preview" width="250" height="103" /></a><p class="wp-caption-text">Hover Preview</p></div>
<div class="wp-caption alignnone" style="width: 260px"><a href="http://img.a4apphack.com/browserconcept-newtab.jpg" rel="shadowbox[post-2013];player=img;" title="New Tab Popup"><img class=" " title="New Tab Popup" src="http://img.a4apphack.com/browserconcept-newtab.jpg" alt="New Tab Popup" width="250" height="86" /></a><p class="wp-caption-text">New Tab Popup</p></div>
<div class="wp-caption alignnone" style="width: 260px"><a href="http://img.a4apphack.com/browserconcept-tgrid.jpg" rel="shadowbox[post-2013];player=img;" title="Tab Grid"><img class=" " title="Tab Grid" src="http://img.a4apphack.com/browserconcept-tgrid.jpg" alt="Tab Grid" width="250" height="189" /></a><p class="wp-caption-text">Tab Grid</p></div>
<p>Please mention in comments if there are any features you would want to see in all the browsers or you deny on any of the idea mentioned.</p>
<p><em>Author of this post is familiar with different web browsers like IE 4 &#8211; 8, Now Defunct Netscape Navigator, Firefox (all versions), Opera, Chrome (all versions), Safari and many others. Has been evangelizing web browsers since 90s.</em></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Conceptualizing+Next+Gen+Browser+Experience+-+http://bit.ly/c9z5tT&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience&amp;title=Conceptualizing+Next+Gen+Browser+Experience" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience&amp;title=Conceptualizing+Next+Gen+Browser+Experience" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience&amp;t=Conceptualizing+Next+Gen+Browser+Experience" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience&amp;title=Conceptualizing+Next+Gen+Browser+Experience&amp;summary=It%20is%20the%20revolution%20of%20web%20browsers%3B%20they%20rule%20internet%20now.%20Browsers%20have%20evolved%20so%20much%20from%20what%20we%20had%20seen%20during%20the%20days%20of%20IE6.%20Now%20Firefox%2C%20Chrome%2C%20Opera%2C%20IE%20are%20on%20war%20to%20prove%20who%20is%20the%20best.%20They%20try%20different%20ways%20to%20win%20the%20heart%20of%20users%3B%20Firefox%20took%20a%20great%20leap%20by%20introducing%20th&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Conceptualizing+Next+Gen+Browser+Experience&amp;du=http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience&amp;cn=It%20is%20the%20revolution%20of%20web%20browsers%3B%20they%20rule%20internet%20now.%20Browsers%20have%20evolved%20so%20much%20from%20what%20we%20had%20seen%20during%20the%20days%20of%20IE6.%20Now%20Firefox%2C%20Chrome%2C%20Opera%2C%20IE%20are%20on%20war%20to%20prove%20who%20is%20the%20best.%20They%20try%20different%20ways%20to%20win%20the%20heart%20of%20users%3B%20Firefox%20took%20a%20great%20leap%20by%20introducing%20th" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience&amp;title=Conceptualizing+Next+Gen+Browser+Experience" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience&amp;title=Conceptualizing+Next+Gen+Browser+Experience" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=2013&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/conceptualizing-next-gen-browser-experience/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Default Secure Google Search for Firefox, Chrome and IE</title>
		<link>http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie</link>
		<comments>http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie#comments</comments>
		<pubDate>Mon, 24 May 2010 23:23:31 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[chrome]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[ie]]></category>
		<category><![CDATA[va]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1981</guid>
		<description><![CDATA[Google has launched Secure Google search hosted on SSL lately . This post talks on how to enable this Secure Google search to the browser search bar/search suggestions in Firefox, Chrome and IE browsers. Updated: Added Screenshots for IE 1. Firefox Go to the Mozilla Addons Page and add Google SSL Search Plugin Select &#8216;Start [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1981.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>Google has launched Secure Google search hosted on SSL lately . This post talks on how to enable this Secure Google search to the browser search bar/search suggestions in Firefox, Chrome and IE browsers.</p>
<p><span style="color: #800000;"><em><strong>Updated: Added Screenshots for IE</strong></em></span></p>
<h3>1. Firefox</h3>
<p>Go to the Mozilla Addons Page and add <a title="Google SSL Search" href="https://addons.mozilla.org/en-US/firefox/addon/161916/">Google SSL Search</a> Plugin</p>
<p><img title="Google  SSL Search in Firefox" src="http://img.a4apphack.com/googlessl-firefox1.jpg" alt="Google SSL Search in Firefox" width="270" height="92" /></p>
<p>Select &#8216;Start using it right away in the dialog box that displays &#8211; Add &#8220;Google SSL&#8221; to the list of engines available in the search bar?</p>
<p><img title="Make  Default in Firefox" src="http://img.a4apphack.com/googlessl-firefox2.jpg" alt="Make Default in Firefox" width="403" height="197" /></p>
<h3>2. Chrome</h3>
<p>Right Click on Chrome Omnibar(Address bar) and Select &#8216;Edit Search Engines&#8217;.</p>
<p><img title="Edit  Search Engines in Chrome" src="http://img.a4apphack.com/googlessl-chrome1.jpg" alt="Edit Search Engines in Chrome" width="502" height="181" /></p>
<p>In the Edit Search Engines Dialog box add <a title="https://www.google.com/searchq=%s" href="https://www.google.com/searchq=%s"><strong>https://www.google.com/search?q=%s</strong></a> in the URL field and click on Make Default Button.</p>
<p><img class="alignnone" title="Add Google SSL in Chrome" src="http://img.a4apphack.com/googlessl-chrome2.jpg" alt="Add Google SSL in Chrome" width="449" height="365" /></p>
<p>Dont forget to check the Chrome Extensions List for Security Testers, <a title="here" href="http://a4apphack.com/index.php/featured/13-chrome-extensions-for-security-testers">here</a> (Internal Post)</p>
<p><strong>3. Internet Explorer</strong></p>
<ul>
<li>Access the <a title="Add Search Providers to Internet Explorer" href="http://www.microsoft.com/windows/ie/searchguide/en-en/default.mspx">Add Search Providers page</a></li>
</ul>
<ul>
<li>In the Create Your Own enter <a href="https://www.google.com/search?q=TEST"><strong>https://www.google.com/search?q=TEST</strong></a> in the URL field</li>
</ul>
<p style="padding-left: 30px;"><img class="alignnone" title="Add Google SSL in IE" src="http://img.a4apphack.com/googlessl-ie1.jpg" alt="Add Google SSL in IE" width="313" height="326" /></p>
<p>Click on the Install Button to see the following screen. Check the &#8216;Make this my default search provider&#8217;</p>
<p style="padding-left: 30px;"><img class="alignnone" title="Google SSL IE Add Screen" src="http://img.a4apphack.com/googlessl-ie2.jpg" alt="Google SSL IE Add Screen" width="397" height="271" /></p>
<p>Now the Search box in IE will display Google.</p>
<p style="padding-left: 30px;"><img class="alignnone" title="Google SSL Installed in IE8" src="http://img.a4apphack.com/googlessl-ie3.jpg" alt="Google SSL Installed in IE8" width="303" height="90" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p>via <a title="Search more securely with encrypted Google web search" href="http://googleblog.blogspot.com/2010/05/search-more-securely-with-encrypted.html">Google Blog</a> and <a title="TechDows" href="http://techdows.com/2010/05/make-google-ssl-search-as-the-default-search-engines-in-firefox-chrome-and-internet-explorer.html">TechDows</a></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE+-+http://bit.ly/9W9nVj&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;title=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;title=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;t=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;title=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE&amp;summary=Google%20has%20launched%20Secure%20Google%20search%20hosted%20on%20SSL%20lately%20.%20This%20post%20talks%20on%20how%20to%20enable%20this%20Secure%20Google%20search%20to%20the%20browser%20search%20bar%2Fsearch%20suggestions%20in%20Firefox%2C%20Chrome%20and%20IE%20browsers.%0D%0A%0D%0AUpdated%3A%20Added%20Screenshots%20for%20IE%0D%0A%0D%0A1.%20Firefox%0D%0A%0D%0AGo%20to%20the%20Mozilla%20Addons%20Page%20and%20add%20Goog&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE&amp;du=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;cn=Google%20has%20launched%20Secure%20Google%20search%20hosted%20on%20SSL%20lately%20.%20This%20post%20talks%20on%20how%20to%20enable%20this%20Secure%20Google%20search%20to%20the%20browser%20search%20bar%2Fsearch%20suggestions%20in%20Firefox%2C%20Chrome%20and%20IE%20browsers.%0D%0A%0D%0AUpdated%3A%20Added%20Screenshots%20for%20IE%0D%0A%0D%0A1.%20Firefox%0D%0A%0D%0AGo%20to%20the%20Mozilla%20Addons%20Page%20and%20add%20Goog" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;title=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;title=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1981&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Pendule &#8211; WebDeveloper Equivalent In Chrome For Security Analysts</title>
		<link>http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts</link>
		<comments>http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts#comments</comments>
		<pubDate>Thu, 11 Feb 2010 23:38:16 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[chrome]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[passwords]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1690</guid>
		<description><![CDATA[Chrome is becoming popular among the developers due to its extended support for the upcoming web technologies. If these features of chrome can help the developers to dissect &#38; analyse the newest web applications, so can it for security analysts. Firefox has become so popular among the security guys due to the availability of addons like WebDeveloper/Firebug which can [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1690.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>Chrome is becoming popular among the developers due to its extended support for the upcoming web technologies. If these features of chrome can help the developers to dissect &amp; analyse the newest web applications, so can it for security analysts. Firefox has become so popular among the security guys due to the availability of addons like WebDeveloper/Firebug which can aid them during their security assessments.</p>
<p>The extension Pendule is an attempt to reproduce the features of WebDeveloper Addon for firefox. Currently it doesn&#8217;t support all the features of WebDeveloper but expected to incorporate soon.</p>
<div class="wp-caption alignnone" style="width: 610px"><a title="Pendule - Chrome Extension" href="http://img.a4apphack.com/pendule-main.jpg" rel="shadowbox[post-1690];player=img;"><img class="  " title="Pendule Chrome Extension" src="http://img.a4apphack.com/pendule-main.jpg" alt="Pendule Chrome Extension" width="600" height="270" /></a><p class="wp-caption-text">Pendule - Chrome Extension</p></div>
<h3><strong>Features</strong></h3>
<p>1. Form Manipulations</p>
<div id="_mcePaste">
<ul>
<li>Show passwords – shows the contents of password fields.</li>
<li>Select tags to text inputs – converts select elements to text inputs.</li>
<li>Remove maxlength – removes maxlength restrictions from inputs.</li>
<li>Clear radio buttons – clears all radio buttons.</li>
</ul>
</div>
<p>2. View Javascripts</p>
<p>3. Show Image Paths Inline</p>
<p><strong>Download Pendule:</strong> <a target="_blank" href="https://chrome.google.com/extensions/detail/gbkffbkamcejhkcaocmkdeiiccpmjfdi" title="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Pendule+-+WebDeveloper+Equivalent+In+Chrome+For+Security+Analysts+-+http://bit.ly/dtMlnc&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts&amp;title=Pendule+-+WebDeveloper+Equivalent+In+Chrome+For+Security+Analysts" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts&amp;title=Pendule+-+WebDeveloper+Equivalent+In+Chrome+For+Security+Analysts" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts&amp;t=Pendule+-+WebDeveloper+Equivalent+In+Chrome+For+Security+Analysts" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts&amp;title=Pendule+-+WebDeveloper+Equivalent+In+Chrome+For+Security+Analysts&amp;summary=Chrome%20is%20becoming%20popular%20among%20the%C2%A0developers%20due%20to%20its%20extended%20support%20for%20the%C2%A0upcoming%20web%20technologies.%20If%20these%20features%20of%20chrome%20can%20help%20the%20developers%20to%20dissect%20%26amp%3B%20analyse%20the%20newest%20web%20applications%2C%20so%20can%20it%20for%20security%20analysts.%20Firefox%20has%20become%20so%20popular%C2%A0among%C2%A0the%20securi&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Pendule+-+WebDeveloper+Equivalent+In+Chrome+For+Security+Analysts&amp;du=http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts&amp;cn=Chrome%20is%20becoming%20popular%20among%20the%C2%A0developers%20due%20to%20its%20extended%20support%20for%20the%C2%A0upcoming%20web%20technologies.%20If%20these%20features%20of%20chrome%20can%20help%20the%20developers%20to%20dissect%20%26amp%3B%20analyse%20the%20newest%20web%20applications%2C%20so%20can%20it%20for%20security%20analysts.%20Firefox%20has%20become%20so%20popular%C2%A0among%C2%A0the%20securi" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts&amp;title=Pendule+-+WebDeveloper+Equivalent+In+Chrome+For+Security+Analysts" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts&amp;title=Pendule+-+WebDeveloper+Equivalent+In+Chrome+For+Security+Analysts" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1690&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Subscribe to SecFox &#8211; Firefox Addon Collections</title>
		<link>http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections</link>
		<comments>http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections#comments</comments>
		<pubDate>Wed, 13 Jan 2010 19:29:34 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[appsec]]></category>
		<category><![CDATA[Secfox]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1630</guid>
		<description><![CDATA[Stay updated with addons discussed in the SecFox series, the most popular section of this blog. For that you need to subscribe to the SecFox addon collection available in the mozilla addons site. SecFox is collection of addons which can be used to customize any firefox to a security assessment tool. At the time of [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1630.png&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>Stay updated with addons discussed in the <a title="SecFox Series" href="http://a4apphack.com/index.php/tag/secfox">SecFox series</a>, the most popular section of this blog. For that you need to subscribe to the SecFox addon collection available in the mozilla addons site.</p>
<p>SecFox is collection of addons which can be used to customize any firefox to a security assessment tool. At the time of writing this collection has 40+ addons which can help the web app sec testers during their assessments.</p>
<p><span id="more-1630"></span>An &#8216;<a title="Add-on Collector" href="https://addons.mozilla.org/en-US/firefox/pages/collector">addon collector</a>&#8216; addon is to be installed to get the SecFox updates. So if any new addon added to SecFox collection gives an alert to the subscriber.</p>
<p>Check the video below which explains how.</p>
<p><object type="application/x-shockwave-flash" style="width:600px;height:440px" data="http://www.youtube.com/v/mzryNGYmvjg&amp;hl=en&amp;fs=1"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="quality" value="best" /><param name="wmode" value="transparent" /><param name="movie" value="http://www.youtube.com/v/mzryNGYmvjg&amp;hl=en&amp;fs=1" /><param name="pluginspage" value="http://www.macromedia.com/go/getflashplayer" />If you can see this, then you might need a Flash Player upgrade or you need to install Flash Player if it's missing. Get <a href="http://get.adobe.com/flashplayer/" target="_blank">Flash Player</a> from Adobe.</object><br/>
		<!-- Valid XHTML flash object delivered by XHTML Video Embed. Get it at: http://saltwaterc.net/xhtml-video-embed -->
		</p>
<p><strong>Download Secfox Collection :</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/collection/secfox" title="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Subscribe+to+SecFox+-+Firefox+Addon+Collections+-+http://bit.ly/96RS74&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections&amp;title=Subscribe+to+SecFox+-+Firefox+Addon+Collections" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections&amp;title=Subscribe+to+SecFox+-+Firefox+Addon+Collections" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections&amp;t=Subscribe+to+SecFox+-+Firefox+Addon+Collections" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections&amp;title=Subscribe+to+SecFox+-+Firefox+Addon+Collections&amp;summary=Stay%20updated%20with%20addons%20discussed%20in%20the%20SecFox%20series%2C%20the%20most%20popular%20section%20of%20this%20blog.%20For%20that%20you%20need%20to%20subscribe%20to%20the%20SecFox%20addon%20collection%20available%20in%20the%20mozilla%20addons%20site.%0D%0A%0D%0ASecFox%20is%20collection%20of%20addons%20which%20can%20be%20used%20to%20customize%20any%20firefox%20to%20a%20security%20assessment%20to&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Subscribe+to+SecFox+-+Firefox+Addon+Collections&amp;du=http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections&amp;cn=Stay%20updated%20with%20addons%20discussed%20in%20the%20SecFox%20series%2C%20the%20most%20popular%20section%20of%20this%20blog.%20For%20that%20you%20need%20to%20subscribe%20to%20the%20SecFox%20addon%20collection%20available%20in%20the%20mozilla%20addons%20site.%0D%0A%0D%0ASecFox%20is%20collection%20of%20addons%20which%20can%20be%20used%20to%20customize%20any%20firefox%20to%20a%20security%20assessment%20to" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections&amp;title=Subscribe+to+SecFox+-+Firefox+Addon+Collections" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections&amp;title=Subscribe+to+SecFox+-+Firefox+Addon+Collections" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1630&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/subscribe-to-secfox-firefox-addon-collections/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<series:name><![CDATA[Secfox]]></series:name>
	</item>
		<item>
		<title>Secfox &#8211; Addons for Cookie Analysis And Manipulation</title>
		<link>http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation</link>
		<comments>http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation#comments</comments>
		<pubDate>Wed, 16 Dec 2009 19:57:00 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[access]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[Secfox]]></category>
		<category><![CDATA[youtube]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1604</guid>
		<description><![CDATA[In this part of the Secfox series, we will be discussing about the addons that can help us during the app security assessments which involves cookie analysis and manipulation. These addons can be of huge help when we perform the type of tests mentioned below. Cookie Prediction Session Fixation Cookie Persistence/Expiration Broken Session Management Traditional Method [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1604.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>In this part of the Secfox series, we will be discussing about the addons that can help us during the app security assessments which involves cookie analysis and manipulation.</p>
<p>These addons can be of huge help when we perform the type of tests mentioned below.</p>
<ul>
<li>Cookie Prediction</li>
<li>Session Fixation</li>
<li>Cookie Persistence/Expiration</li>
<li>Broken Session Management</li>
</ul>
<h3>Traditional Method</h3>
<p>We use a proxy interceptor like Paros/Burp/WebScarab to trap the HTTP requests and modify the values during its transit. For this to happen, we need to setup a proxy and ensure that it listens to the browser traffic. An additional step is required if the application uses an SSL connection, i.e. to store the Proxy&#8217;s forged certificate in the browser. The intercepted request enables us to add new cookies or modify the existing ones. We can also check when exactly are the cookie values issued and whether it is getting flushed upon session expiration.</p>
<h3>Usage of Addons</h3>
<p>We have various addons for firefox which makes the tasks mentioned above easier. Certain addons allow to view the cookies stored in the browser and others allows us to edit it. The advantage &#8211; we don&#8217;t need any proxy to do this job, we can view/edit from the browser itself.</p>
<p><strong>1. View Cookies</strong></p>
<p>This addon adds a tab in the &#8216;Page Info&#8217; box available on the Firefox context menu.</p>
<div class="wp-caption alignnone" style="width: 610px"><a title="View Cookies Addon" href="http://img.a4apphack.com/secfox-cookiemanip-viewcookie.jpg" rel="shadowbox[post-1604];player=img;"><img class=" " title="View Cookies Addon" src="http://img.a4apphack.com/secfox-cookiemanip-viewcookie.jpg" alt="View Cookies Addon" width="600" height="422" /></a><p class="wp-caption-text">View Cookies Addon</p></div>
<p><strong>Download Link:</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/315" title="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<hr />
<p><strong>2. Add N Edit Cookies</strong></p>
<p>This addon integrates a Cookie Editor to firefox. This also allows us to edit the attributes of the cookie.</p>
<div class="wp-caption alignnone" style="width: 360px"><a title="Add n Edit Cookies Addon" href="http://img.a4apphack.com/secfox-cookiemanip-addnedit.jpg" rel="shadowbox[post-1604];player=img;"><img class="  " title="Add n Edit Cookies Addon" src="http://img.a4apphack.com/secfox-cookiemanip-addnedit.jpg" alt="Add n Edit Cookies Addon" width="350" height="257" /></a><a href="http://img.a4apphack.com/secfox-cookiemanip-addnedit.jpg" rel="shadowbox[post-1604];player=img;"></a><p class="wp-caption-text">Add n Edit Cookies Addon</p></div>
<p><strong>Download Link:</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/13793" title="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<p><span id="more-1604"></span></p>
<hr />
<p>3. <strong>FireCookie</strong></p>
<p>If you are using Firebug a lot, then cookies are easily accessible inside firebug tabs if you have FireCookie installed.</p>
<div class="wp-caption alignnone" style="width: 610px"><a title="FireCookie Addon" href="http://img.a4apphack.com/secfox-cookiemanip-firecookie.jpg" rel="shadowbox[post-1604];player=img;"><img class=" " title="FireCookie Addon" src="http://img.a4apphack.com/secfox-cookiemanip-firecookie.jpg" alt="FireCookie Addon" width="600" height="165" /></a><p class="wp-caption-text">FireCookie Addon</p></div>
<p><strong>Download Link:</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/6683" title="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<hr />
<p><strong>4. Cookie Swap</strong></p>
<p>This is an amazing addon which helps us to switch between various cookie profiles. This addon saves all the cookies for a particular domain to the chosen profile. These profiles can be managed through a Profile Manager which comes with the tool. One can add and organize the profile which can be easily swapped from the Firefox status bar. This is of great use if you are testing the application which has multiple login credentials.</p>
<div class="wp-caption alignnone" style="width: 410px"><a title="Cookie Swap - Status Bar" href="http://img.a4apphack.com/secfox-cookiemanip-cookieswap.jpg" rel="shadowbox[post-1604];player=img;"><img class=" " title="Cookie Swap - Status Bar" src="http://img.a4apphack.com/secfox-cookiemanip-cookieswap.jpg" alt="Cookie Swap - Status Bar" width="400" height="226" /></a><p class="wp-caption-text">Cookie Swap - Status Bar</p></div>
<div class="wp-caption alignnone" style="width: 360px"><a title="Cookie Swap - Manage Profiles" href="http://img.a4apphack.com/secfox-cookiemanip-cookieswapmanage.jpg" rel="shadowbox[post-1604];player=img;"><img class=" " title="Cookie Swap - Manage Profiles" src="http://img.a4apphack.com/secfox-cookiemanip-cookieswapmanage.jpg" alt="Cookie Swap - Manage Profiles" width="350" height="239" /></a><p class="wp-caption-text">Cookie Swap - Manage Profiles</p></div>
<p><strong>Download Link: </strong><a target="_blank" href="Download" title="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<hr />
<p><strong>5. WebDeveloper &#8211; View Cookies</strong></p>
<p>Web developer has a built-in cookie viewer and editor. Once you select on &#8216;View Cookies&#8217; available under the &#8216;Cookies&#8217; menu, a new tab is displayed with a big list of cookies for that particular domain and options to edit it. I prefer using &#8216;Add n Edit Cookie&#8217; to this addon.</p>
<div class="wp-caption alignnone" style="width: 510px"><a title="WebDeveloper - View Cookies" href="http://img.a4apphack.com/secfox-cookiemanip-webdeveloper.jpg" rel="shadowbox[post-1604];player=img;"><img class=" " title="WebDeveloper - View Cookies" src="http://img.a4apphack.com/secfox-cookiemanip-webdeveloper.jpg" alt="WebDeveloper - View Cookies" width="500" height="316" /></a><p class="wp-caption-text">WebDeveloper - View Cookies</p></div>
<p><strong>Download Link:</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/60" title="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<hr />
<h3>Video Demo</h3>
<p>Watch the following video. Here, I quickly go through each of the addon I&#8217;d mentioned above.</p>
<p><object type="application/x-shockwave-flash" style="width:600px;height:440px" data="http://www.youtube.com/v/5i4aXl7vx_g&amp;hl=en&amp;fs=1"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="quality" value="best" /><param name="wmode" value="transparent" /><param name="movie" value="http://www.youtube.com/v/5i4aXl7vx_g&amp;hl=en&amp;fs=1" /><param name="pluginspage" value="http://www.macromedia.com/go/getflashplayer" />If you can see this, then you might need a Flash Player upgrade or you need to install Flash Player if it's missing. Get <a href="http://get.adobe.com/flashplayer/" target="_blank">Flash Player</a> from Adobe.</object><br/>
		<!-- Valid XHTML flash object delivered by XHTML Video Embed. Get it at: http://saltwaterc.net/xhtml-video-embed -->
		</p>
<p>Stay tuned&#8230; Secfox will continue&#8230;.</p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Secfox+-+Addons+for+Cookie+Analysis+And+Manipulation+-+http://bit.ly/bqJuyi&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation&amp;title=Secfox+-+Addons+for+Cookie+Analysis+And+Manipulation" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation&amp;title=Secfox+-+Addons+for+Cookie+Analysis+And+Manipulation" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation&amp;t=Secfox+-+Addons+for+Cookie+Analysis+And+Manipulation" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation&amp;title=Secfox+-+Addons+for+Cookie+Analysis+And+Manipulation&amp;summary=In%20this%20part%20of%20the%20Secfox%20series%2C%20we%20will%20be%20discussing%20about%20the%20addons%20that%20can%20help%20us%20during%20the%20app%20security%20assessments%20which%20involves%20cookie%20analysis%20and%20manipulation.%0D%0A%0D%0AThese%20addons%20can%20be%20of%20huge%20help%20when%20we%20perform%20the%20type%20of%20tests%20mentioned%20below.%0D%0A%0D%0A%0D%0A%09Cookie%20Prediction%0D%0A%09Session%20Fix&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Secfox+-+Addons+for+Cookie+Analysis+And+Manipulation&amp;du=http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation&amp;cn=In%20this%20part%20of%20the%20Secfox%20series%2C%20we%20will%20be%20discussing%20about%20the%20addons%20that%20can%20help%20us%20during%20the%20app%20security%20assessments%20which%20involves%20cookie%20analysis%20and%20manipulation.%0D%0A%0D%0AThese%20addons%20can%20be%20of%20huge%20help%20when%20we%20perform%20the%20type%20of%20tests%20mentioned%20below.%0D%0A%0D%0A%0D%0A%09Cookie%20Prediction%0D%0A%09Session%20Fix" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation&amp;title=Secfox+-+Addons+for+Cookie+Analysis+And+Manipulation" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation&amp;title=Secfox+-+Addons+for+Cookie+Analysis+And+Manipulation" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1604&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/secfox-addons-for-cookie-analysis-and-manipulation/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<series:name><![CDATA[Secfox]]></series:name>
	</item>
		<item>
		<title>Secfox &#8211; GroundSpeed, Client Side Data Manipulation From Sidebar</title>
		<link>http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away</link>
		<comments>http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away#comments</comments>
		<pubDate>Tue, 15 Dec 2009 00:57:17 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[Secfox]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1593</guid>
		<description><![CDATA[Pen testers fondly use webproxy a lot to manipulate the HTTP requests created by the browser before it is sent to the web sever. This helps us to verify the the absence of any server side validations or flaw in the client side validations. But feel lucky if you are using Firefox while performing web [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1593.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<div>
<p>Pen testers fondly use webproxy a lot to manipulate the HTTP requests created by the browser before it is sent to the web sever. This helps us to verify the the absence of any server side validations or flaw in the client side validations. But feel lucky if you are using Firefox while performing web app security assessments, &#8217;cause we have a cool extension &#8216;GroundSpeed&#8217; which exactly does that.</p>
<p>I dont want to blabber much on describing how it works since the author has a nice writeup in his GroundSpeed homepage.</p>
<blockquote><p>&#8220;Groundspeed is an open-source Firefox extension that manipulates the interface of web applications in order to make the life of the security tester easier. It allows security testers to manipulate the way they interact with the web application’s user interface by manipulating the forms and form elements, eliminating annoying limitations and client-side controls.</p>
<p>Some of the practical uses of Groundspeed include changing the types of form fields, like for example changing hidden fields into text fields, removing size and length limitations on input fields and modifying any JavaScript event handlers to bypass client side validation.</p>
<p>Groundspeed works by dynamically modifying the Document Object Model (DOM) of the page after Firefox has finished loading and rendering it. The changes take effect immediately and, since it happens entirely on the client side without generating new requests to the server, it is completely transparent to the application.&#8221;</p>
</blockquote>
<p><span id="more-1593"></span></p>
<p><strong>Check the video</strong></p>
<p><object type="application/x-shockwave-flash" style="width:600px;height:440px" data="http://www.vimeo.com/moogaloop.swf?clip_id=7465799&amp;server=www.vimeo.com&amp;show_title=1&amp;show_byline=1&amp;show_portrait=0"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="quality" value="best" /><param name="wmode" value="transparent" /><param name="movie" value="http://www.vimeo.com/moogaloop.swf?clip_id=7465799&amp;server=www.vimeo.com&amp;show_title=1&amp;show_byline=1&amp;show_portrait=0" /><param name="pluginspage" value="http://www.macromedia.com/go/getflashplayer" />If you can see this, then you might need a Flash Player upgrade or you need to install Flash Player if it's missing. Get <a href="http://get.adobe.com/flashplayer/" target="_blank">Flash Player</a> from Adobe.</object><br/>
		<!-- Valid XHTML flash object delivered by XHTML Video Embed. Get it at: http://saltwaterc.net/xhtml-video-embed -->
		</p>
<p><strong>Conclusion</strong></p>
<p>Whatever GroundSpeed can do can be done with Firebug, but this makes life super easy. We might tend to mess the HTML code displayed in the firebug window. But with GroundSpeed, we exactly achieve want we want. Another advantage of this addon compared to firebug is that this helps us to minimize the time wasted in searching for the variable names and the attributes which we intend to change if we had used Firebug.</p>
<p>As the author quotes, Firebug is meant for Developers and GroundSpeed for PenTesters. We hope that there will be many enhancements in the future so as to make this a full fledged PenTest addon.</p>
<h3>Gallery</h3>
<div class="wp-caption alignnone" style="width: 260px"><a title="GroundSpeed Conversions" href="http://img.a4apphack.com/groundspeed-conversions.png" rel="shadowbox[post-1593];player=img;"><img class=" " title="GroundSpeed Conversions" src="http://img.a4apphack.com/groundspeed-conversions.png" alt="GroundSpeed Conversions" width="250" height="459" /></a><p class="wp-caption-text">GroundSpeed Conversions</p></div>
<div class="wp-caption alignnone" style="width: 260px"><a title="GroundSpeed Conversions" href="http://img.a4apphack.com/groundspeed-removelength.jpg" rel="shadowbox[post-1593];player=img;"><img class=" " title="GroundSpeed - Remove Max Length" src="http://img.a4apphack.com/groundspeed-removelength.jpg" alt="GroundSpeed - Remove Max Length" width="250" height="168" /></a><p class="wp-caption-text">GroundSpeed - Remove Max Length</p></div>
<p><br class="spacer_" /></p>
<p><strong>Install GroundSpeed Firefox Addon:</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/46698" title="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<p><br class="spacer_" /></p>
<p><a href="http://groundspeed.wobot.org/" title="GroundSpeed Logo"><img class="alignnone" title="GroundSpeed Logo" src="http://img.a4apphack.com/groundspeed-logo.jpg" alt="" width="188" height="50" /></a></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
</div>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Secfox+-+GroundSpeed%2C+Client+Side+Data+Manipulation+From+Sidebar+-+http://bit.ly/cNmBwr&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away&amp;title=Secfox+-+GroundSpeed%2C+Client+Side+Data+Manipulation+From+Sidebar" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away&amp;title=Secfox+-+GroundSpeed%2C+Client+Side+Data+Manipulation+From+Sidebar" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away&amp;t=Secfox+-+GroundSpeed%2C+Client+Side+Data+Manipulation+From+Sidebar" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away&amp;title=Secfox+-+GroundSpeed%2C+Client+Side+Data+Manipulation+From+Sidebar&amp;summary=Pen%20testers%20fondly%20use%20webproxy%20a%20lot%20to%20manipulate%20the%20HTTP%20requests%20created%20by%20the%20browser%20before%20it%20is%20sent%20to%20the%20web%20sever.%20This%20helps%20us%20to%20verify%20the%20the%20absence%20of%20any%20server%20side%20validations%20or%20flaw%20in%20the%20client%20side%20validations.%20But%20feel%20lucky%20if%20you%20are%20using%20Firefox%20while%20performing%20web&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Secfox+-+GroundSpeed%2C+Client+Side+Data+Manipulation+From+Sidebar&amp;du=http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away&amp;cn=Pen%20testers%20fondly%20use%20webproxy%20a%20lot%20to%20manipulate%20the%20HTTP%20requests%20created%20by%20the%20browser%20before%20it%20is%20sent%20to%20the%20web%20sever.%20This%20helps%20us%20to%20verify%20the%20the%20absence%20of%20any%20server%20side%20validations%20or%20flaw%20in%20the%20client%20side%20validations.%20But%20feel%20lucky%20if%20you%20are%20using%20Firefox%20while%20performing%20web" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away&amp;title=Secfox+-+GroundSpeed%2C+Client+Side+Data+Manipulation+From+Sidebar" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away&amp;title=Secfox+-+GroundSpeed%2C+Client+Side+Data+Manipulation+From+Sidebar" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1593&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/secfox-groundspeed-client-side-manipulation-a-click-away/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<series:name><![CDATA[Secfox]]></series:name>
	</item>
		<item>
		<title>Make Your Firefox Truly Portable With Portable Gears</title>
		<link>http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears</link>
		<comments>http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears#comments</comments>
		<pubDate>Tue, 15 Sep 2009 03:00:20 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Firefox]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[gears]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[Portable]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1438</guid>
		<description><![CDATA[Google Gears provides enhanced interactive functionality for websites designed to use it: drag-and-drop, client-side database storage, and the ability to view and work with specially prepared websites when offline (not connected to the Internet). Now-a-days most of the feature rich sites interact with the Gears installed in the PC and makes our browsing experience better. [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1438.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>Google Gears provides enhanced interactive functionality for websites designed to use it: drag-and-drop, client-side database storage, and the ability to view and work with specially prepared websites when offline (not connected to the Internet).</p>
<p>Now-a-days most of the feature rich sites interact with the Gears installed in the PC and makes our browsing experience better. But what if we frequently switch our PCs and use portable version of Firefox! what if we dont have admin privileges in the PC we are currently working with? Gears Portable Addon can save our day.</p>
<p><span id="more-1438"></span></p>
<p>This add-on is an unmodified repackaging of Google&#8217;s binaries via the official Windows installer/updater. (In other words, it&#8217;s the official releases, simply ZIP&#8217;d into an XPI file.)</p>
<h3>Installation</h3>
<ol>
<li>Download and install <a title="Mozilla Addons - Google Gears Portable" href="https://addons.mozilla.org/en-US/firefox/addon/13492">Google Gears Portable</a> (This is an experimental addon so check &#8216;<strong>Let me install this experimental add-on</strong>&#8216; to install this addon <a href="http://img.a4apphack.com/gearsport-addoninstall.jpg" rel="shadowbox[post-1438];player=img;" title="Gears Addon Install"><img title="Gears Addon Install" src="http://img.a4apphack.com/gearsport-addoninstall.jpg" alt="" width="513" height="269" /></a></li>
<li>Restart your firefox. </li>
<li>Go to the site you want to enable Gears and click on the Gears icon.</li>
<li>As shown in the below screenshot Allow the Gears Access. </li>
<p><a href="http://img.a4apphack.com/gearsport-allowgears.jpg" rel="shadowbox[post-1438];player=img;" title="Allow Gears"><img class="alignnone" title="Allow Gears" src="http://img.a4apphack.com/gearsport-allowgears.jpg" alt="" width="379" height="267" /></a></p>
</ol>
<p><strong>Download Gears Portable :</strong> <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/13492" title="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Make+Your+Firefox+Truly+Portable+With+Portable+Gears+-+http://bit.ly/9bOMfI&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears&amp;title=Make+Your+Firefox+Truly+Portable+With+Portable+Gears" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears&amp;title=Make+Your+Firefox+Truly+Portable+With+Portable+Gears" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears&amp;t=Make+Your+Firefox+Truly+Portable+With+Portable+Gears" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears&amp;title=Make+Your+Firefox+Truly+Portable+With+Portable+Gears&amp;summary=Google%20Gears%20provides%20enhanced%20interactive%20functionality%20for%20websites%20designed%20to%20use%20it%3A%20drag-and-drop%2C%20client-side%20database%20storage%2C%20and%20the%20ability%20to%20view%20and%20work%20with%20specially%20prepared%20websites%20when%20offline%20%28not%20connected%20to%20the%20Internet%29.%0D%0A%0D%0ANow-a-days%20most%20of%20the%20feature%20rich%20sites%20interact&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Make+Your+Firefox+Truly+Portable+With+Portable+Gears&amp;du=http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears&amp;cn=Google%20Gears%20provides%20enhanced%20interactive%20functionality%20for%20websites%20designed%20to%20use%20it%3A%20drag-and-drop%2C%20client-side%20database%20storage%2C%20and%20the%20ability%20to%20view%20and%20work%20with%20specially%20prepared%20websites%20when%20offline%20%28not%20connected%20to%20the%20Internet%29.%0D%0A%0D%0ANow-a-days%20most%20of%20the%20feature%20rich%20sites%20interact" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears&amp;title=Make+Your+Firefox+Truly+Portable+With+Portable+Gears" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears&amp;title=Make+Your+Firefox+Truly+Portable+With+Portable+Gears" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1438&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/firefox/make-your-firefox-truly-portable-with-portable-gears/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SecFox &#8211; XSSMe, Automated XSS Detection in Firefox</title>
		<link>http://a4apphack.com/featured/secfox-xssme-automated-xss-detection-in-firefoxpart-3</link>
		<comments>http://a4apphack.com/featured/secfox-xssme-automated-xss-detection-in-firefoxpart-3#comments</comments>
		<pubDate>Thu, 03 Sep 2009 12:42:17 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[automate]]></category>
		<category><![CDATA[sidebar]]></category>
		<category><![CDATA[xss]]></category>

		<guid isPermaLink="false">http://a4apphack.com/blog/?p=1270</guid>
		<description><![CDATA[In this part of SecFox series, detection of XSS vulnerabilities with FireFox is explained. Here, we talk about XSSMe addon which can be is used to automate the tests for XSS thereby saving our precious time. &#8220;The tool works by submitting your HTML forms and substituting the form value with strings that are representative of [...]]]></description>
			<content:encoded><![CDATA[<p>In this part of SecFox series, detection of XSS vulnerabilities with FireFox is explained. Here, we talk about XSSMe addon which can be is used to automate the tests for XSS thereby saving our precious time.</p>
<p><a href="http://a4apphack.com/blog/wp-content/uploads/2009/06/xssmerunning.jpg" rel="shadowbox[post-1270];player=img;" title="XSSMe Running"><img class="alignnone size-full wp-image-1272" title="XSSMe Running" src="http://a4apphack.com/blog/wp-content/uploads/2009/06/xssmerunning.jpg" alt="XSSMe Running" width="313" height="196" /></a></p>
<blockquote><p>&#8220;The tool works by submitting your HTML forms and substituting the form value with strings that are representative of an XSS attack. If the resulting HTML page sets a specific JavaScript value (document.vulnerable=true) then the tool marks the page as vulnerable to the given XSS string. The tool does not attempting to compromise the security of the given system. It looks for possible entry points for an attack against the system&#8221; &#8211; <a class="profileLink" href="https://addons.mozilla.org/en-US/firefox/user/1792636">Security Compass</a></p></blockquote>
<p><span id="more-1270"></span><br />
<a href="http://a4apphack.com/blog/wp-content/uploads/2009/06/xssmesidebar.jpg" rel="shadowbox[post-1270];player=img;" title="XSSMe Sidebar"><img class="alignright size-full wp-image-1273" title="XSSMe Sidebar" src="http://a4apphack.com/blog/wp-content/uploads/2009/06/xssmesidebar-102x315-custom.jpg" alt="XSSMe Sidebar" width="102" height="315" /></a></p>
<p>XSSMe addon is a sidebar tool where we can see all the details of the forms in the current page and select the fields we want to test for XSS. To make things simpler, we have 2 buttons which can be used to test all the fields for Top/All XSS tests.</p>
<p><em>Click on the image at the right to view it larger</em></p>
<p>Once we click on test button, we get a dialog box which displays the progress of the running tests. It takes few minutes to complete the tests and depends on the Internet connection speed. We can easily tweak the options if we need this to run quickly and is explained in the latter part of the post.</p>
<h4>Working</h4>
<p>XSSMe detects the XSS vulnerabilities by automatically submitting the forms which has its field values tampered with XSS scripts and then analyses the response to check whether the output was encoded or not. Each page is loaded in a new tab and then the values are submitted and the tab are closed automatically before testing for the next script.</p>
<h4>XSSMe in Action</h4>
<p><object type="application/x-shockwave-flash" style="width:530px;height:440px" data="http://www.youtube.com/v/wlzLD4fZKwU&amp;hl=en&amp;fs=1"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="quality" value="best" /><param name="wmode" value="transparent" /><param name="movie" value="http://www.youtube.com/v/wlzLD4fZKwU&amp;hl=en&amp;fs=1" /><param name="pluginspage" value="http://www.macromedia.com/go/getflashplayer" />If you can see this, then you might need a Flash Player upgrade or you need to install Flash Player if it's missing. Get <a href="http://get.adobe.com/flashplayer/" target="_blank">Flash Player</a> from Adobe.</object><br/>
		<!-- Valid XHTML flash object delivered by XHTML Video Embed. Get it at: http://saltwaterc.net/xhtml-video-embed -->
		</p>
<h4>XSSMe Options</h4>
<p>There are few options available in this addon which can help us tweak the results we are looking for. We can change the character set, which XSSMe uses by default, to speed up the process. We can add/remove custom XSS vectors (XSS scripts). The whole list can be exported so that it can be reused later.</p>
<p><object type="application/x-shockwave-flash" style="width:530px;height:440px" data="http://www.youtube.com/v/qnjNApXJnnI&amp;hl=en&amp;fs=1"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="quality" value="best" /><param name="wmode" value="transparent" /><param name="movie" value="http://www.youtube.com/v/qnjNApXJnnI&amp;hl=en&amp;fs=1" /><param name="pluginspage" value="http://www.macromedia.com/go/getflashplayer" />If you can see this, then you might need a Flash Player upgrade or you need to install Flash Player if it's missing. Get <a href="http://get.adobe.com/flashplayer/" target="_blank">Flash Player</a> from Adobe.</object><br/>
		<!-- Valid XHTML flash object delivered by XHTML Video Embed. Get it at: http://saltwaterc.net/xhtml-video-embed -->
		</p>
<p><strong>Final Report</strong></p>
<p>Once the assessment is complete, final report is displayed which gives us the information on which fields are vulnerable and which XSS scripts got executed. At a quick glance we can check the characters which came out unencoded from the &#8216;XSS Heuristic Test Results&#8217; section. From the below screenshot, we can find that all the special characters which are used for constructing malicious scripts were found to be unencoded when passed through <strong>field1</strong>. This implies that field1 is vulnerable to XSS attacks.</p>
<p><a href="http://a4apphack.com/blog/wp-content/uploads/2009/06/xssmetestresults.jpg" rel="shadowbox[post-1270];player=img;" title="Test Results"><img class="alignnone size-full wp-image-1274" title="Test Results" src="http://a4apphack.com/blog/wp-content/uploads/2009/06/xssmetestresults-349x330-custom.jpg" alt="Test Results" width="349" height="330" /></a></p>
<p><strong>Download XSSMe :</strong><a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/7598" title="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<p style="text-align: right;"><strong>(To be continued&#8230;)</strong></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=SecFox+-+XSSMe%2C+Automated+XSS+Detection+in+Firefox+-+http://bit.ly/apKLtU&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/featured/secfox-xssme-automated-xss-detection-in-firefoxpart-3&amp;title=SecFox+-+XSSMe%2C+Automated+XSS+Detection+in+Firefox" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/featured/secfox-xssme-automated-xss-detection-in-firefoxpart-3&amp;title=SecFox+-+XSSMe%2C+Automated+XSS+Detection+in+Firefox" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/featured/secfox-xssme-automated-xss-detection-in-firefoxpart-3&amp;t=SecFox+-+XSSMe%2C+Automated+XSS+Detection+in+Firefox" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/featured/secfox-xssme-automated-xss-detection-in-firefoxpart-3&amp;title=SecFox+-+XSSMe%2C+Automated+XSS+Detection+in+Firefox&amp;summary=In%20this%20part%20of%20SecFox%20series%2C%20detection%20of%20XSS%20vulnerabilities%20with%20FireFox%20is%20explained.%20Here%2C%20we%20talk%20about%20XSSMe%20addon%20which%20can%20be%20is%20used%20to%20automate%20the%20tests%20for%20XSS%20thereby%20saving%20our%20precious%20time.%0D%0A%0D%0A%0D%0A%22The%20tool%20works%20by%20submitting%20your%20HTML%20forms%20and%20substituting%20the%20form%20value%20with%20stri&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=SecFox+-+XSSMe%2C+Automated+XSS+Detection+in+Firefox&amp;du=http://a4apphack.com/featured/secfox-xssme-automated-xss-detection-in-firefoxpart-3&amp;cn=In%20this%20part%20of%20SecFox%20series%2C%20detection%20of%20XSS%20vulnerabilities%20with%20FireFox%20is%20explained.%20Here%2C%20we%20talk%20about%20XSSMe%20addon%20which%20can%20be%20is%20used%20to%20automate%20the%20tests%20for%20XSS%20thereby%20saving%20our%20precious%20time.%0D%0A%0D%0A%0D%0A%22The%20tool%20works%20by%20submitting%20your%20HTML%20forms%20and%20substituting%20the%20form%20value%20with%20stri" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/featured/secfox-xssme-automated-xss-detection-in-firefoxpart-3&amp;title=SecFox+-+XSSMe%2C+Automated+XSS+Detection+in+Firefox" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/featured/secfox-xssme-automated-xss-detection-in-firefoxpart-3&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/featured/secfox-xssme-automated-xss-detection-in-firefoxpart-3&amp;title=SecFox+-+XSSMe%2C+Automated+XSS+Detection+in+Firefox" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/featured/secfox-xssme-automated-xss-detection-in-firefoxpart-3" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1270&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/secfox-xssme-automated-xss-detection-in-firefoxpart-3/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<series:name><![CDATA[Secfox]]></series:name>
	</item>
		<item>
		<title>SecFox &#8211; HTTP Header Analysis + Domain Details</title>
		<link>http://a4apphack.com/featured/secfox-http-header-analysis-domain-details-part-2</link>
		<comments>http://a4apphack.com/featured/secfox-http-header-analysis-domain-details-part-2#comments</comments>
		<pubDate>Sun, 17 May 2009 12:58:40 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[command]]></category>
		<category><![CDATA[customize]]></category>
		<category><![CDATA[greasemonkey]]></category>
		<category><![CDATA[scripts]]></category>
		<category><![CDATA[tips]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=27</guid>
		<description><![CDATA[In the previous post, Secfox Part 1, we had seen how to customize the environment in FireFox to get better ease of use and more workspace. Now its time to fill in the addons. This post has two sections, the first explains how to obtain details of any website (Information Gathering) and the second deals [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/27.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p><!-- img class="size-full wp-image-1258 alignleft" style="margin-bottom: 5px; margin-right: 7px;" title="Zoom Firefox" src="http://a4apphack.com/blog/wp-content/uploads/2009/05/zoomfirefox.jpg" alt="Zoom Firefox" width="157" height="117" / -->In the previous post, <a href="http://a4apphack.com/index.php/featured/secfox-turn-firefox-into-an-ultimate-hacking-tool-part-1">Secfox Part 1</a>, we had seen how to customize the environment in FireFox to get better ease of use and more workspace. Now its time to fill in the addons.</p>
<p>This post has two sections, the first explains how to obtain details of any website (Information Gathering) and the second deals with analysis and understanding of HTTP raw header information.</p>
<p><span id="more-27"></span></p>
<h3>Addon 1: Domain Details</h3>
<p>DomainDetails addon, can be helpful in finding out Server Type, Headers, IP Address, Location Flag, and Whois information of any website you browse with Firefox. Once you install the addon, Server name, Ip address of the current website is displayed in the status bar, and a tiny button is displayed, clicking on that will display a menu which gives access to explore more details of that website.</p>
<p><a href="http://a4apphack.com/blog/wp-content/uploads/2009/05/domaindetails.jpg" rel="shadowbox[post-27];player=img;" title="Domain Details"><img class="alignnone size-full wp-image-1253" title="Domain Details" src="http://a4apphack.com/blog/wp-content/uploads/2009/05/domaindetails.jpg" alt="Domain Details" width="247" height="187" /></a></p>
<h4>SecFox Addon, How?</h4>
<p>How can this addon be useful while performing the security assessments?</p>
<p><strong>1. Display&#8217;s Server Name and Version </strong>- This info can be used to search for the open vulnerabilities found in the target server. Several advisories publishes vulnerabilities associated with a particular version of various servers; the sites like <a title="milw0rm" href="http://www.milw0rm.com/">milw0rm</a>, <a title="Cert" href="http://www.us-cert.gov">cert</a>, <a title="Secunia" href="http://secunia.com/advisories/">Secunia</a>, etc holds a repository of latest advisories.</p>
<p><strong>2. Displays IP Address &#8211; </strong>Input of several vulnerability scanners(like nmap) will be the IP address of the target website. Ideally, to obtain the IP address of the target, we would have to do ns lookup (open cmd prompt, then nslookup www.targetsite.com), but with with DomainDetails we can directly lookup IP address of the website immediately while the page loads.</p>
<p><strong>3. Webpage fingerprint &#8211; </strong>Whois is used for querying authoritative registries/ databases to discover the owner of a domain name, an IP address, or an autonomous system number of the target website. Online sites like <a title="WhoIs" href="http://www.whois.net/">Whois.net</a>, <a title="DNSStuff Google" href="http://private.dnsstuff.com/tools/dnsreportsmpl.ch?domain=google.com">DNSStuff</a>,<a title="Central OPs" href="http://centralops.net/co/"> Central Ops</a> gives server info any many other details about any site you search for. Domain Details just adds option to directly search for these details from the statusbar menu, saving us few of our preciuos keystrokes.</p>
<h4>Demo</h4>
<p><object type="application/x-shockwave-flash" style="width:530px;height:440px" data="http://www.youtube.com/v/zEeg-LQIA3w&amp;hl=en&amp;fs=1"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="quality" value="best" /><param name="wmode" value="transparent" /><param name="movie" value="http://www.youtube.com/v/zEeg-LQIA3w&amp;hl=en&amp;fs=1" /><param name="pluginspage" value="http://www.macromedia.com/go/getflashplayer" />If you can see this, then you might need a Flash Player upgrade or you need to install Flash Player if it's missing. Get <a href="http://get.adobe.com/flashplayer/" target="_blank">Flash Player</a> from Adobe.</object><br/>
		<!-- Valid XHTML flash object delivered by XHTML Video Embed. Get it at: http://saltwaterc.net/xhtml-video-embed -->
		</p>
<p><strong>Download DomainDetails</strong> : <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/2166" title="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<hr />
<h3>Addon 2 : LiveHTTP Headers</h3>
<p>The addon LiveHTTP Headers is one of the must have addon if you are a security analyst. This addon displays the RAW HTTP Headers (Request and Response) for the webpage you are browsing.</p>
<p><a href="http://a4apphack.com/blog/wp-content/uploads/2009/05/livehttpheaders.jpg" rel="shadowbox[post-27];player=img;" title="LiveHTTP Headers Window"><img class="alignnone size-full wp-image-1246" title="LiveHTTP Headers Window" src="http://a4apphack.com/blog/wp-content/uploads/2009/05/livehttpheaders.jpg" alt="LiveHTTP Headers Window" width="530" height="513" /></a></p>
<h4>SecFox Addon, How?</h4>
<p><strong>1. Display&#8217;s server Name and Version &#8211; </strong>As explained in the previous section, this can be used to find out and exploit the known vulnerabilities found in the target server.</p>
<p><strong>2. Displays the Response Code -</strong> This is very helpful in knowing how the server responds for any client request. So if there is any misconfiguration in the server so that a particular request of the client forces the client to behave indifferently and exposing the vulnerability.</p>
<p><strong>3. Cookie Config &#8211; </strong>This also displays the cookie config set at the server. For example if we observe that in the server response, for any request sent for any sensitive pages, that <span style="font-family: courier new,courier;">Cache-Control: no-cache</span> is not present, then it means that those sensitive pages are cached and be visible for those who are not intended to.</p>
<p><strong>4. Replay any forged request &#8211; </strong>We can modify the POST data and replay it from this addon. This means that we are bypassing any client side validations present in that site.</p>
<p><strong>5. Monitor Cookie Info &#8211; </strong>We can also monitor the cookie value and try to reverse engineer and decode its value.</p>
<p><strong>6. This list continues &#8211; </strong>Analysis of HTTP Headers would will be the first step when doing the security assessments and LiveHTTP Headers will be the key to get it. We can break the headers into parts and research on that to get the best out of it.</p>
<p>More info on <a title="Wikipedia - HTTP Headers" href="http://en.wikipedia.org/wiki/List_of_HTTP_headers">HTTP Headers</a></p>
<h4>Demo</h4>
<p><object type="application/x-shockwave-flash" style="width:530px;height:440px" data="http://www.youtube.com/v/_M8ifZEdEjg&amp;hl=en&amp;fs=1"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="quality" value="best" /><param name="wmode" value="transparent" /><param name="movie" value="http://www.youtube.com/v/_M8ifZEdEjg&amp;hl=en&amp;fs=1" /><param name="pluginspage" value="http://www.macromedia.com/go/getflashplayer" />If you can see this, then you might need a Flash Player upgrade or you need to install Flash Player if it's missing. Get <a href="http://get.adobe.com/flashplayer/" target="_blank">Flash Player</a> from Adobe.</object><br/>
		<!-- Valid XHTML flash object delivered by XHTML Video Embed. Get it at: http://saltwaterc.net/xhtml-video-embed -->
		</p>
<p><strong>Download LiveHTTP Headers</strong> : <a target="_blank" href="https://addons.mozilla.org/en-US/firefox/addon/3829" title="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<p>Stay Tuned coming posts features more security addons and its usage&#8230;</p>
<p>&#8211;</p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=SecFox+-+HTTP+Header+Analysis+%2B+Domain+Details+-+http://bit.ly/ccc3RR&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/featured/secfox-http-header-analysis-domain-details-part-2&amp;title=SecFox+-+HTTP+Header+Analysis+%2B+Domain+Details" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/featured/secfox-http-header-analysis-domain-details-part-2&amp;title=SecFox+-+HTTP+Header+Analysis+%2B+Domain+Details" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/featured/secfox-http-header-analysis-domain-details-part-2&amp;t=SecFox+-+HTTP+Header+Analysis+%2B+Domain+Details" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/featured/secfox-http-header-analysis-domain-details-part-2&amp;title=SecFox+-+HTTP+Header+Analysis+%2B+Domain+Details&amp;summary=In%20the%20previous%20post%2C%20Secfox%20Part%201%2C%20we%20had%20seen%20how%20to%20customize%20the%20environment%20in%20FireFox%20to%20get%20better%20ease%20of%20use%20and%20more%20workspace.%20Now%20its%20time%20to%20fill%20in%20the%20addons.%0D%0A%0D%0AThis%20post%20has%20two%20sections%2C%20the%20first%20explains%20how%20to%20obtain%20details%20of%20any%20website%20%28Information%20Gathering%29%20and%20the%20second&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=SecFox+-+HTTP+Header+Analysis+%2B+Domain+Details&amp;du=http://a4apphack.com/featured/secfox-http-header-analysis-domain-details-part-2&amp;cn=In%20the%20previous%20post%2C%20Secfox%20Part%201%2C%20we%20had%20seen%20how%20to%20customize%20the%20environment%20in%20FireFox%20to%20get%20better%20ease%20of%20use%20and%20more%20workspace.%20Now%20its%20time%20to%20fill%20in%20the%20addons.%0D%0A%0D%0AThis%20post%20has%20two%20sections%2C%20the%20first%20explains%20how%20to%20obtain%20details%20of%20any%20website%20%28Information%20Gathering%29%20and%20the%20second" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/featured/secfox-http-header-analysis-domain-details-part-2&amp;title=SecFox+-+HTTP+Header+Analysis+%2B+Domain+Details" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/featured/secfox-http-header-analysis-domain-details-part-2&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/featured/secfox-http-header-analysis-domain-details-part-2&amp;title=SecFox+-+HTTP+Header+Analysis+%2B+Domain+Details" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/featured/secfox-http-header-analysis-domain-details-part-2" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=27&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/secfox-http-header-analysis-domain-details-part-2/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<series:name><![CDATA[Secfox]]></series:name>
	</item>
		<item>
		<title>SecFox &#8211; Turn Firefox Into an Ultimate Hacking tool</title>
		<link>http://a4apphack.com/featured/secfox-turn-firefox-into-an-ultimate-hacking-tool-part-1</link>
		<comments>http://a4apphack.com/featured/secfox-turn-firefox-into-an-ultimate-hacking-tool-part-1#comments</comments>
		<pubDate>Tue, 12 May 2009 05:40:57 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[customize]]></category>
		<category><![CDATA[greasemonkey]]></category>
		<category><![CDATA[tips]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=22</guid>
		<description><![CDATA[SecFox is nothing but a customized version of Firefox which is intended for performing web application security tests and audits. Using SecFox reduces time and effort we would have put if we had used any other browser along with tons of free + commercial tools used for testing the apps. Firefox is an amazing browser [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/22.png&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p><!-- img class="size-full wp-image-1222 alignleft" style="margin-bottom: 5px; margin-right: 10px;" title="SecFox" src="http://a4apphack.com/blog/wp-content/uploads/2009/05/secfox.jpg" alt="SecFox" width="143" height="138" / -->SecFox is nothing but a customized version of Firefox which is intended for performing web application security tests and audits. Using SecFox reduces time and effort we would have put if we had used any other browser along with tons of free + commercial tools used for testing the apps.</p>
<p>Firefox is an amazing browser whose features can be extended by installing addons or tweaking the browser itself. This feature of it is utilized to the max for building a powerful hacking/testing tool, SecFox.</p>
<p>This articles(split into sections) details the process of creating SecFox and also includes the usage of various security related firefox addons with relevant examples and screencasts.<br />
 <span id="more-22"></span></p>
<h3>&#8220;Leave me alone&#8221; says Firefox (Create a new profile and let your default Firefox alone)</h3>
<p>Before turning Firefox to Secfox, we need to make sure that we don&#8217;t mess up with the settings of the existing firefox browser (default profile). For that, we will have to create a new profile called &#8216;SecFox&#8217;. Any modifications, like installing addons or change browser settings, we make while using the SecFox profile will not affect the default profile.</p>
<h4>Tweak Firefox Config. (Enable profilemanager)</h4>
<ol>
<li>Type about:config in the addressbar</li>
<li>In the filter, type &#8216;profile&#8217; and change <strong><span style="font-family: Courier New;">profile.manage_only_at_launch</span></strong> to <strong>true</strong> (default is false).</li>
<li>Close firefox</li>
</ol>
<p>Now create a shortcut of firefox in your desktop and RightClick and open the properties. Now modify the target parameter as shown below.<br />
 <span style="font-family: Courier New;"><a id="t2t9" title="Firefox_Installation_Directory" href="http://kb.mozillazine.org/Installation_directory">%Firefox_Installation_Directory%</a><strong>firefox.exe -P -no-remote</strong></span></p>
<p><span style="font-family: Courier New;"><strong><a rel="attachment wp-att-1214" href="http://a4apphack.com/?attachment_id=1214" title="Create New Profile"><img class="alignnone size-full wp-image-1214" title="Create New Profile" src="http://a4apphack.com/blog/wp-content/uploads/2009/05/createprofile.jpg" alt="Create New Profile" width="347" height="250" /></a><br />
 </strong></span></p>
<div id="c23v" style="text-align: left;"><strong> </strong></div>
<p>Create a new profile &#8216;SecFox&#8217; with Profile Manager.</p>
<p>To Run the New Profile, create a new shortcut and use the following command<br style="font-family: Courier New;" /> <span style="font-family: Courier New;"><a id="t2t9" title="Firefox_Installation_Directory" href="http://kb.mozillazine.org/Installation_directory">%Firefox_Installation_Directory%</a><strong> </strong></span><strong><span style="font-family: Courier New;">firefox.exe -P SecFox -no-remote</span></strong></p>
<p>You can create 2 shortcuts, one for your default &#8216;firefox&#8217; and other for &#8216;secfox&#8217; by using the above command.</p>
<p><strong>Note:</strong> <strong><span style="font-family: Courier New;">-no-remote</span></strong> parameter is used to run mutiple firefox instances simultaneously.</p>
<h3>Are you SecFox or Firefox? (How to identify)</h3>
<p><a rel="attachment wp-att-1208" href="http://a4apphack.com/?attachment_id=1208" title="Change Icons"><img class="size-full wp-image-1208 alignright" title="Change Icons" src="http://a4apphack.com/blog/wp-content/uploads/2009/05/changeicons.jpg" alt="Change Icons" width="95" height="229" /></a></p>
<p>While running Secfox and default profile simultaneously, we will have trouble in identifying and switching to the profile required profile. So we need to modify the GUI and other properties of the profiles so that the difference is very much visible and the needed is easily accessible.</p>
<h4><strong>Change Desktop Icons</strong></h4>
<p>The first activity in this step would be setting different icons for the 2 profiles. Try changing the Secfox to some geeky looking dark icon. IÂ  used the icon from crystalXp, which can be downloaded from <a id="k477" title="here" href="http://www.crystalxp.net/galerie/en.id.11440.html">here</a>.</p>
<h4><strong>Differentiate with help of themes</strong></h4>
<p>Once you have your firefox windows open, while switching the browser windows (during Alt-tab), you will still find difficulty in mapping browser window and its corresponding profile. So the best option would be to put easily identifiable theme on SecFox. I used black version of the default theme for my new Sec profile, which you can get it from <a id="n:wu" title="Office 2007 Black" href="https://addons.mozilla.org/en-US/firefox/addon/8076">here</a>.</p>
<h4><strong>Change Firefox Title</strong></h4>
<p>Tweak your titlebar so that you can identify your profile even if Firefox windows are minimized. Download and install <strong><a id="x62w" title="Title Bar Tweaks" href="https://addons.mozilla.org/en-US/firefox/addon/10495">Titlebar Tweaks</a></strong> in both the profiles. After installation go to Titlebar Tweak Options and select &#8216;Browser Name &#8211; Webpage Title&#8217; layout. Click on the Browser Name tab and type in &#8216;S&#8217; and &#8216;F&#8217; as Browser names, for SecFox profile and default profile respectively.</p>
<p><a rel="attachment wp-att-1209" href="http://a4apphack.com/?attachment_id=1209" title="Tweak Firefox Titlebar"><img class="alignnone size-full wp-image-1209" title="Tweak Firefox Titlebar" src="http://a4apphack.com/blog/wp-content/uploads/2009/05/tweaktitle.jpg" alt="Tweak Firefox Titlebar" width="530" height="46" /></a></p>
<h3>Install &#8216;Must Have&#8217; Addons:</h3>
<p>Before installing addons which can help us with testing the web applications, we would want to install couple of addons which will definitely help us at later point of time.</p>
<h4><a title="Faviconize Tabs" href="https://addons.mozilla.org/en-US/firefox/addon/3780">FaviconizeTab </a>:</h4>
<p>As a tester you might need to keep loads and loads of tabs open that means less space to work and more confusion. FaviconizeTab helps in reducing the size of the tabs and thereby helping us to keep more tabs in little space. Download <a title="Faviconize Tabs" href="https://addons.mozilla.org/en-US/firefox/addon/3780">FaviconizeTab.</a></p>
<p>Check the post, <a title="Ultimate Firefox Tab Clutter Reduction with Faviconize tabs +(Gmail+Greader) Favicon Alerts +Tree Tabs" href="http://a4apphack.com/featured/ultimate-firefox-tab-clutter-reduction">Ultimate Clutter reduction with Favicons</a>, for amazing tips with FaviconizeTab.</p>
<h4><a title="FireGestures" href="https://addons.mozilla.org/en-US/firefox/addon/6366">FireGestures</a> :</h4>
<p>Control your Firefox with mouse gestures. This can be very useful when you want to do some quick browser navigation (like switching tabs, close tabs, open link in new tab etc). This again will be of great use once we start testing websites. Download <a title="FireGestures" href="https://addons.mozilla.org/en-US/firefox/addon/6366">FireGestures</a></p>
<h4><a title="Greasemonkey" href="https://addons.mozilla.org/en-US/firefox/addon/748">GreaseMonkey </a>:</h4>
<p>Write custom scripts to modify the way in which the website works. Or load any existing greasemonkey scripts, which can be obtained from various repositories like userscripts.org, to enhance our testing. Download <a title="Greasemonkey" href="https://addons.mozilla.org/en-US/firefox/addon/748">GreaseMonkey</a></p>
<h4><a title="Stylish" href="https://addons.mozilla.org/en-US/firefox/addon/2108">Stylish </a>:</h4>
<p>This is similar to greasemonkey. Some cool Stylish scripts are available for download so we need this installed. Download <a title="Stylish" href="https://addons.mozilla.org/en-US/firefox/addon/2108">Stylish</a>.</p>
<h3>Tweak Firefox Toolbar, Increase your work area:</h3>
<ul>
<li><strong>&#8216;Use Small Icons&#8217;</strong></li>
</ul>
<p style="padding-left: 60px;">RightClick on the toolbar and select &#8216;Customize&#8217;. Check &#8216;Use small icons&#8217;, this reduces the width of the firefox toolbar thereby increasing the vertical space.</p>
<ul>
<li><strong>Remove Home Button</strong></li>
</ul>
<p style="padding-left: 60px;">We rarely use home button in present in the toolbar by default. We can remove the same by following simple steps. Open &#8216;Customize&#8217; (check the above bullet) and drag-n-drop the home button from the navigation toolbar into the Customize Toolbars Window.</p>
<ul>
<li><strong>Hide the Menus Toolbar (<a title="Personal Menu" href="https://addons.mozilla.org/en-US/firefox/addon/3895">PersonalMenu</a>)</strong></li>
</ul>
<p style="padding-left: 60px;">Install Personal Menu (from <a title="Personal Menu" href="https://addons.mozilla.org/en-US/firefox/addon/3895">here</a>), so that we can completely replace the Menu Toolbar with a tiny menu button.</p>
<ul>
<li><strong><a title="Combine Stop &amp; Reload" href="http://userstyles.org/styles/10">Combine Stop &amp; Reload Button</a></strong></li>
</ul>
<p style="padding-left: 60px;">We can combine Stop &amp; Reload buttons in the navigation bar by adding a small Stylish scriptfound <a title="Combine Stop &amp; Reload" href="http://userstyles.org/styles/10">here</a> (check &#8216;Must Have&#8217; addons section above to install Stylish).  This will display stop icon while loading the page and changes to reload once the page has loaded.</p>
<h3>Secfox-Firefox Side-by-Side</h3>
<p>Once you complete all the above mentioned steps you have 2 independent firefox windows running with 2 different profiles simultaneously.</p>
<p><a rel="attachment wp-att-1211" href="http://a4apphack.com/?attachment_id=1211" title="Secfox Firefox side-by-side"><img class="alignnone size-full wp-image-1211" title="Secfox Firefox side-by-side" src="http://a4apphack.com/blog/wp-content/uploads/2009/05/secfox-firefox.jpg" alt="Secfox Firefox side-by-side" width="530" height="315" /></a></p>
<p>Now the new profile, SecFox, has to be made functional with various security related addons.</p>
<p>Upcoming posts related to SecFox will contain Info on installing and using the those addons.</p>
<p style="text-align: left;"><strong>(To be Continued&#8230;.)</strong></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=SecFox+-+Turn+Firefox+Into+an+Ultimate+Hacking+tool+-+http://bit.ly/awl6Py&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/featured/secfox-turn-firefox-into-an-ultimate-hacking-tool-part-1&amp;title=SecFox+-+Turn+Firefox+Into+an+Ultimate+Hacking+tool" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/featured/secfox-turn-firefox-into-an-ultimate-hacking-tool-part-1&amp;title=SecFox+-+Turn+Firefox+Into+an+Ultimate+Hacking+tool" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/featured/secfox-turn-firefox-into-an-ultimate-hacking-tool-part-1&amp;t=SecFox+-+Turn+Firefox+Into+an+Ultimate+Hacking+tool" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/featured/secfox-turn-firefox-into-an-ultimate-hacking-tool-part-1&amp;title=SecFox+-+Turn+Firefox+Into+an+Ultimate+Hacking+tool&amp;summary=SecFox%20is%20nothing%20but%20a%20customized%20version%20of%20Firefox%20which%20is%20intended%20for%20performing%20web%20application%20security%20tests%20and%20audits.%20Using%20SecFox%20reduces%20time%20and%20effort%20we%20would%20have%20put%20if%20we%20had%20used%20any%20other%20browser%20along%20with%20tons%20of%20free%20%2B%20commercial%20tools%20used%20for%20testing%20the%20apps.%0D%0A%0D%0AFirefox%20i&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=SecFox+-+Turn+Firefox+Into+an+Ultimate+Hacking+tool&amp;du=http://a4apphack.com/featured/secfox-turn-firefox-into-an-ultimate-hacking-tool-part-1&amp;cn=SecFox%20is%20nothing%20but%20a%20customized%20version%20of%20Firefox%20which%20is%20intended%20for%20performing%20web%20application%20security%20tests%20and%20audits.%20Using%20SecFox%20reduces%20time%20and%20effort%20we%20would%20have%20put%20if%20we%20had%20used%20any%20other%20browser%20along%20with%20tons%20of%20free%20%2B%20commercial%20tools%20used%20for%20testing%20the%20apps.%0D%0A%0D%0AFirefox%20i" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/featured/secfox-turn-firefox-into-an-ultimate-hacking-tool-part-1&amp;title=SecFox+-+Turn+Firefox+Into+an+Ultimate+Hacking+tool" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/featured/secfox-turn-firefox-into-an-ultimate-hacking-tool-part-1&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/featured/secfox-turn-firefox-into-an-ultimate-hacking-tool-part-1&amp;title=SecFox+-+Turn+Firefox+Into+an+Ultimate+Hacking+tool" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/featured/secfox-turn-firefox-into-an-ultimate-hacking-tool-part-1" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=22&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/secfox-turn-firefox-into-an-ultimate-hacking-tool-part-1/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<series:name><![CDATA[Secfox]]></series:name>
	</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk
Page Caching using disk (enhanced) (request URI is rejected)

Served from: a4apphack.com @ 2010-09-09 17:51:29 -->