Go Back   Velocity Reviews > Newsgroups > Computer Security
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply

Computer Security - HttpCatcher

 
Thread Tools Search this Thread
Old 07-21-2004, 09:17 PM   #1
Default HttpCatcher


Hi,
I had some time to kill so I developped a little tool
very useful for testing the security of a web site. I called it HttpCatcher.

"HttpCatcher is a free tool that will let you see the way your browser
communicates with the server. HttpCatcher will behave as a local proxy, and
will let you interfere in the communication process. HttpCatcher is the tool
you need to understand the http protocol. You will see full http headers and
you will be able to change them on the fly."

Any of the parameters or the headers can be spoofed..

You can dowload it freely from http://www.httpcatcher.com

At the moment, I only made a release for Windows XP.


Did you like it ? please add a link on your webpage..





zebulon
  Reply With Quote
Old 07-22-2004, 01:15 AM   #2
*Vanguard*
 
Posts: n/a
Default Re: HttpCatcher
"zebulon" <>
wrote in news:40fecf82$0$4969$:
> Hi,
> I had some time to kill so I developped a little tool
> very useful for testing the security of a web site. I called it
> HttpCatcher.
>
> "HttpCatcher is a free tool that will let you see the way your browser
> communicates with the server. HttpCatcher will behave as a local
> proxy, and will let you interfere in the communication process.
> HttpCatcher is the tool you need to understand the http protocol. You
> will see full http headers and you will be able to change them on the
> fly."
>
> Any of the parameters or the headers can be spoofed..
>
> You can dowload it freely from http://www.httpcatcher.com
>
> At the moment, I only made a release for Windows XP.
>
>
> Did you like it ? please add a link on your webpage..


HTTP Tracer seems to do more regarding monitoring. Don't remember that
it could replace strings in the datastream, though. From what I can
tell, the author/owner of HTTP Tracer disappeared so I don't know if
HTTP Tracer is in the public domain. I recall that it expired after a
trial period.

--
__________________________________________________
*** Post replies to newsgroup. Share with others.
(E-mail: domain = ".com", add "=NEWS=" to Subject)
__________________________________________________



*Vanguard*
  Reply With Quote
Old 07-22-2004, 01:39 AM   #3
Hairy One Kenobi
 
Posts: n/a
Default Re: HttpCatcher

"zebulon" <> wrote in message
news:40fecf82$0$4969$...
> Hi,
> I had some time to kill so I developped a little tool
> very useful for testing the security of a web site. I called it

HttpCatcher.
>
> "HttpCatcher is a free tool that will let you see the way your browser
> communicates with the server. HttpCatcher will behave as a local proxy,

and
> will let you interfere in the communication process. HttpCatcher is the

tool
> you need to understand the http protocol. You will see full http headers

and
> you will be able to change them on the fly."
>
> Any of the parameters or the headers can be spoofed..
>
> You can dowload it freely from http://www.httpcatcher.com


http://tinyurl.com/45y9d for Borland-based alternatives; SocketSpy is Open
Source - never did get around to doing that with my own SocketProxy.. if you
really want it (why!?!) then shout ;o)

Neither allow the request to be modified, but.. then again, neither are
protocol-specific

--

Hairy One Kenobi

Disclaimer: the opinions expressed in this opinion do not necessarily
reflect the opinions of the highly-opinionated person expressing the opinion
in the first place. So there!




Hairy One Kenobi
  Reply With Quote
Old 07-22-2004, 01:49 AM   #4
DarkSamurai
 
Posts: n/a
Default Re: HttpCatcher
zebulon wrote:
> Hi,
> I had some time to kill so I developped a little tool
> very useful for testing the security of a web site. I called it HttpCatcher.
>


Which language did you use and would you mind to show the source code?


DarkSamurai
  Reply With Quote
Old 07-22-2004, 01:19 PM   #5
Mimic
 
Posts: n/a
Default Re: HttpCatcher
zebulon wrote:

> Hi,
> I had some time to kill so I developped a little tool
> very useful for testing the security of a web site. I called it HttpCatcher.
>
> "HttpCatcher is a free tool that will let you see the way your browser
> communicates with the server. HttpCatcher will behave as a local proxy, and
> will let you interfere in the communication process. HttpCatcher is the tool
> you need to understand the http protocol. You will see full http headers and
> you will be able to change them on the fly."
>
> Any of the parameters or the headers can be spoofed..
>
> You can dowload it freely from http://www.httpcatcher.com
>
> At the moment, I only made a release for Windows XP.
>
>
> Did you like it ? please add a link on your webpage..
>
>
>


Theres a FireFox extension that shows you all the headers in real time
which is nice.

--
Mimic

"When life hands you lemons, ask for tequila and salt."
ZGF0YWZsZXhAY2FubmFiaXNtYWlsLmNvbQ== ( www.hidemyemail.net )
"Without knowledge you have fear. With fear you create your own nightmares."
"He who controls Google, controls the world".


Mimic
  Reply With Quote
Old 07-23-2004, 08:49 PM   #6
Socket
 
Posts: n/a
Default Re: HttpCatcher
it is similar but catch as well file operations, for example
cookies and internet tmp files
http://www.smike.ru


Socket
  Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off




SEO by vBSEO 3.3.2 ©2009, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46