owasp · manual request compare in ection search websemces get-cookie spider summary messages proxy...

42
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP Foundation OWASP http://www.owasp.org WebScarab Presentation screen captures and diagrams Colin Watson Watson Hall Ltd colin.watson(at)owasp.org OWASP Dublin, 11 th March 2011

Upload: others

Post on 27-Jan-2021

6 views

Category:

Documents


0 download

TRANSCRIPT

  • Copyright © The OWASP FoundationPermission is granted to copy, distribute and/or modify this document under the terms of the OWASP License.

    The OWASP Foundation

    OWASP

    http://www.owasp.org

    WebScarabPresentation screen captures and diagrams

    Colin Watson

    Watson Hall Ltd

    colin.watson(at)owasp.org

    OWASP Dublin, 11th March 2011

  • 2OWASP

    Outline

    � Installing WebScarab

    � Setting up

    � Logging

    � Requests and responses

    �See also.... Zed Attack Proxy

    � Additional resources

    Notes are available as a separate document athttp://www.owasp.org/index.php/Ireland/Training/OWASP_projects_and_resources_you_can_use_TODAY

  • 3OWASP

  • 4OWASP

  • 5OWASP

  • 6OWASP

  • 7OWASP

  • 8OWASP

  • 9OWASP

    WEB SERVERYOUR COMPUTER NETWORK PROXY

    (OPTIONAL)

    Web

    Browser

    WebScarab

    WEB SERVERYOUR COMPUTER NETWORK PROXY

    (OPTIONAL)

    Web

    Browser

    WebScarab

  • 10OWASP

  • 11OWASP

  • 12OWASP

  • 13OWASP

  • 14OWASP

  • 15OWASP

    WEB SERVERYOUR COMPUTER NETWORK PROXY

    (OPTIONAL)

    Client

    Application

    WebScarab

    REVERSE PROXY

  • 16OWASP

  • 17OWASP

  • 18OWASP

  • 19OWASP

  • 20OWASP

  • 21OWASP

  • 22OWASP

  • 23OWASP

  • 24OWASP

  • 25OWASP

  • 26OWASP

  • 27OWASP

  • 28OWASP

  • 29OWASP

  • 30OWASP

  • 31OWASP

  • 32OWASP

  • 33OWASP

  • 34OWASP

  • 35OWASP

  • 36OWASP

  • 37OWASP

  • 38OWASP

  • 39OWASP

  • 40OWASP

  • 41OWASP

  • 42OWASP

    End