Firefox Extensions A Hacker or Developer Must Have

SHARE:

Firefox Extensions A Hacker or Developer Must Have- thesolutionrider
Sometimes we can see some new challengers asking for some help using Micro$oft Edge or other uncanny software in order to complete some basic challenges... Here I suggest to use Firefox, to make the way easier to challenges completion. Why especially Firefox? At first because it's free, it's open-source, it's a good and fast browser, but above all else because it's highly customizable depending on your needs. Its add-on section on the Mozilla website offers thousands of extensions in many different categories, such as web development, penetration testing and security analysis. Using Firefox this way makes the job easier to do when you're trying to find security holes or exploit some webserver flaws, and helps you to save time by using only one tool for many different tasks related to security tests. If you plan to become a white or gray hat, then this browser is your friend. It's one of the most important browsers for testers working in Web application domain. If you don't have it installed yet, you can download Firefox here: https://www.mozilla.org/.

Below is a little list of interesting extensions that you could find useful to perform penetration tests and complete some hacking challenges all over the web. This list of add-ons varies from information gathering tools to attacking tools (don't pay attention to the list order). Use only the ones you need, many of them offering similar functionalities. They're all free and downloadable from the official Mozilla website:

FoxyProxy Standard

FoxyProxy is an advanced proxy management tool that completely replaces Firefox's limited proxying capabilities. Based on the URL patterns, it switches internet connection across one or more proxy servers. When proxy is in use, it also displays an animated icon.

Firebug

With this development tools you can edit, debug and monitor HTML, CSS and Javascript live in any web page... Very useful for hacking purposes.

Web Developer

Web Developer adds various web development tools to the browser. It helps in web application penetration testing.

DOM Inspector

DOM Inspector is a tool that can be used to inspect and edit the live DOM of any web document or XUL application. The DOM can be navigated using a two-paned window displaying a variety of different views on the document and all nodes within.

View Source Chart

Enables accelerated human processing of DOM

JavaScript Deobfuscator

This add-on shows you what JavaScript code runs on a web page, even if it is obfuscated and generated on the fly. Simply open JavaScript Deobfuscator from the Web Developer menu and watch the scripts being compiled/executed.

View Dependencies

View Dependencies adds a tab to the Page Info window, in which it lists all the files which were loaded to show the current page.

Wappalyzer

Wappalyzer is an add-on that identifies softwares used by a website.

IE Tab V2

The updated, fully supported IE Tab. Embed IE in a Firefox tab. IE Tab Features: FF 4+ support, IE 7-9 compatibility modes, old IE Tab settings import. Enbles you to use the embedded IE engine within Mozilla Firefox.

NoScript

With this tool, you can monitor each and every script running on a website ; you can block any of the scripts and see what each script actually does.

QuickJava

Allows quick enable and disable of Java, Javascript, Cookies, Image Animations, Flash, Silverlight, Images, Stylesheets and Proxy from the Toolbar. This is great for increasing security or decreasing bandwidth.

Greasemonkey

Grease Monkey is the counter part to NoScript, its function is the exact opposite of Noscript. We use Noscript to block scripts and GreaseMonkey to run them. It allows you to customize the way a web page displays or behaves by using small bits of JavaScript.

Greasefire

Automatically find user scripts on Userscripts.org (requires Greasemonkey or Scriptish)

Live HTTP Headers

View HTTP headers of a page and while browsing. It displays live headers of each http request and response. An essential add-on for security testing process.

Tamper Data

Similar to the Live HTTP Header add-on but has header editing capabilities. Use tamperdata to view and modify HTTP/HTTPS headers and post parameters. It can be used in performing XSS and SQL Injection attacks by modifying header data.

Modify Headers

Add, modify and filter the HTTP request headers sent to web servers. This addon is particularly useful for Mobile web development, HTTP testing and privacy.

Header Spy

Shows HTTP headers on statusbar.

User Agent Switcher

The User Agent Switcher extension adds a menu and a toolbar button to switch the user agent of a browser. User Agent add on helps in spoofing the browser while performing some attacks.

Poster

A developer tool for interacting with URLs and other web resources that lets you make HTTP requests, set the entity body, and content type. This allows you to interact with web services and inspect the results...

Cookies Manager+

Cookies manager to view, edit and create new cookies. It also shows extra information about cookies, allows edit multiple cookies at once and backup/restore them. With this tool, you can easily add session data manually in cookies. This tool is performed in session hijacking attack when you have the active cookies of the user. Edit your cookies to add the data and hijack the account.

Cookie Monster

Cookie Monster provides proactive cookie management on a site or domain level basis, including 3rd party cookies. Via the Toolbar, it provides easy access to enhanced cookie functionality, while doing so in a non-intrusive manner.

Export Cookies

Exports all cookies in IE manner. Makes a Netscape standard cookies.txt file. Very useful for WGET --load-cookies option.

Websecurify

Websecurify is a complete and powerful cross-platform web security testing technology designed from the ground up with simplicity in mind. This tool can easily detect XSS, SQL injection and other web application vulnerability. It gives most of the features available in standalone tool.

HackBar

Simple security audit / Penetration test tool. It helps in testing simple SQL injection and XSS holes. You cannot execute standard exploits but you can easily use it to test whether vulnerability exists or not. You can manually submit form data with GET or POST requests. It also has encryption and encoding tools, that helps in testing XSS vulnerability with encoded XSS payloads, and then perform the attack. It also helps you to easily bypass client side validations of the page.

Fireforce

Brute-force attacks on GET or POST forms

XSS Me

Cross-Site Scripting (XSS) is a common flaw found in todays web applications. XSS-Me is the Exploit-Me tool used to test for reflected XSS vulnerabilities. It scans all forms of the page, and then performs an attack on the selected pages with pre-defined XSS payloads. After the scan is complete, it lists all the pages that renders a payload on the page, and may be vulnerable to XSS attack.

SQL Inject Me

SQL Injection vulnerabilities can cause a lot of damage to a web application. A malicious user can possibly view records, delete records, drop tables or gain access to the server. SQL Inject-Me is Firefox Extension used to test for SQL Injection vulnerabilities.

Access Me

Access vulnerabilities in an application can allow an attacker to access resources without being authenticated. Access-Me is a Firefox extension used to test for Access vulnerabilities.

Clear Cache Button

Adds a clear cache toolbar button. After installing the extension, find the clear cache button in the toolbar customization... Quick and easy to use!

ReloadEvery

Reloads web pages every so many seconds or minutes. The function is accessible via the context menu (menu you get when you right click on a web page) or via tab context menu (right click on the tab).

ShowIP

Show the IP address(es) of the current page in the status bar. Showip delivers Website, City, Country and other information for SEO, security and fun It also allows querying custom services by IP (right mouse button) and hostname (left mouse button), like whois, netcraft.

Flagfox

Displays a country flag depicting the location of the current website's server and provides a multitude of tools such as site safety checks, whois, translation, similar sites, validation, URL shortening, and more...

Port Scanner 

This extension scans the TCP ports.

Hosts Spy

On a shared hosting, find other sites hosted on the web server.

Domain Details

Display server type, headers, country flag and the links whois reports.

DT Whois

Domaintools.com whois button...

CipherFox

Displays the current SSL/TLS cipher, protocol and certificate chain in the Add-on bar and Site ID dialog

Calomel SSL Validation

The addon will score the strength of the SSL connection. The toolbar button will change color depending on the strength of encryption from red (weak) to green (strong). The drop down window shows a detailed summary of the SSL connection.

Cert Viewer Plus

Certificate viewer enhancements: PEM format view, file export, trust configuration

Export All Certificates
Adds an option to the Certificate Manager to export all root certificates.

ViewStatePeeker

This add-on can decode and show viewstate contents of an *.aspx page. Once you intall this add-on, it shows up a 'Show Viewstate' item in context menu of Firefox. When this menuitem is clicked, a popup comes up showing the viewstate details.

PassiveRecon

PassiveRecon provides information security professionals with the ability to perform "packetless" discovery of target resources utilizing publicly available information. Simply visit the target entity's website (using Tor), right mouse-click and navigate to the PassiveRecon menu, or use the status bar menu. From there you can open individual public domain websites or click Show All to view all of the sites at once.

CryptoFox

CryptoFox is an encryption or decryption tool for Mozilla Firefox. It supports most of the available encryption algorithm. So, you can easily encrypt or decrypt data with supported encryption algorithm. This add-on comes with dictionary attack support, to crack MD5 cracking passwords. Although, it hasn’t have good reviews, it works satisfactorily.

SecurityFocus Vulnerabilities search plugin

SecurityFocus Vulnerabilities search plugin, is not a security tool but a search plugin that lets users search for vulnerabilities from the Security Focus database.

Packet Storm search plugin

This is another search plugin that lets users search for tools and exploits from packetstormsecurity.org. The website offers free up-to-date security tools, exploits and advisories.

Offsec Exploit-db Search

This is another plugin similar to the last two above. It also lets users search for vulnerabilities and exploits listed in exploit-db.com. This website is always up-to-date with latest exploits and vulnerability details.

Snort IDS Rule Search

Snort IDS Rule Search is another search add-on for Firefox. It lets users search for Snort IDS rules on the snort.org website. Snort is the most widely deployed IDS/IPS technology worldwide. It’s an open source network Intrusion prevention and detection system with more than 400,000 users.

COMMENTS

Name

11th,2,12th,20,12th Chemistry,5,12th Computer Science,7,12th Physics,1,5th Sem CSE,1,AAI ATC,2,Android,18,Banking,1,Blogger,41,Books,5,BTech,17,CBSE,22,CSE,4,ECE,3,Electronics,1,English,2,ESE,1,Ethical Hacking,61,Exams,5,Games,9,GATE,1,GATE ECE,1,Government Jobs,1,GS,1,How To,27,IBPS PO,1,Information,52,Internet,24,IPU,8,JEE,8,JEE Mains,8,Jobs,1,Linux,65,News,18,Notes,23,Physics,3,Placement,10,PO,1,Poetry,3,RRB,1,SEO,11,Softwares,38,SSC,2,SSC CGL,1,SSC GS,2,Tips and Tricks,46,UPSC,1,Windows,46,
ltr
item
SolutionRider- One Stop Solution for Notes, Exams Prep, Jobs & Technical Blogs.: Firefox Extensions A Hacker or Developer Must Have
Firefox Extensions A Hacker or Developer Must Have
Top Firefox Extensions A Hacker or Developer Must Have to become expert in hacking and developing web skills...-thesolutionrider
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhKyw36yQhMXc1Dz5bxLT2bp_X61YjBRl0aA3Jz3Fj3Q8RpQbwyo1wvS3m3CaHWO3msSlhwqO5xYaVZG1BsHQl8WMU2Ov7HCwbTQvG2oA4GW9hPdebjTnXpPooKOORCbUsvAHZdM5WVOxKY/s640/page-image.5c2b5c5ce10a.png
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhKyw36yQhMXc1Dz5bxLT2bp_X61YjBRl0aA3Jz3Fj3Q8RpQbwyo1wvS3m3CaHWO3msSlhwqO5xYaVZG1BsHQl8WMU2Ov7HCwbTQvG2oA4GW9hPdebjTnXpPooKOORCbUsvAHZdM5WVOxKY/s72-c/page-image.5c2b5c5ce10a.png
SolutionRider- One Stop Solution for Notes, Exams Prep, Jobs & Technical Blogs.
https://thesolutionrider.blogspot.com/2017/12/firefox-extensions-hacker-or-developer.html
https://thesolutionrider.blogspot.com/
https://thesolutionrider.blogspot.com/
https://thesolutionrider.blogspot.com/2017/12/firefox-extensions-hacker-or-developer.html
true
6820083649286484786
UTF-8
Loaded All Posts Not found any posts VIEW ALL Readmore Reply Cancel reply Delete By Home PAGES POSTS View All RECOMMENDED FOR YOU LABEL ARCHIVE SEARCH ALL POSTS Not found any post match with your request Back Home Sunday Monday Tuesday Wednesday Thursday Friday Saturday Sun Mon Tue Wed Thu Fri Sat January February March April May June July August September October November December Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec just now 1 minute ago $$1$$ minutes ago 1 hour ago $$1$$ hours ago Yesterday $$1$$ days ago $$1$$ weeks ago more than 5 weeks ago Followers Follow THIS CONTENT IS PREMIUM Please share to unlock Copy All Code Select All Code All codes were copied to your clipboard Can not copy the codes / texts, please press [CTRL]+[C] (or CMD+C with Mac) to copy