Ajax Fingerprinting for Web 2.0 Applications | |
From: | Joe Klemmer |
Date: | Tue, 30 Jan 2007 22:52:51 -0500 |
Ajax Fingerprinting for Web 2.0 Applications by Shreeraj Shah - net square - Tuesday, 30 January 2007. Fingerprinting is an age old concept and one that adds great value to assessment methodologies. There are several tools available for fingerprinting operating systems (nmap), Web servers (httprint), devices, etc. Each one of these tools uses a different method – inspecting the TCP stack, ICMP responses, HTTP responses. With this evolution of Web 2.0 applications that use Ajax extensively, it is important to fingerprint Ajax tools, framework or library used by a particular web site or a page. This paper describes the method of doing Ajax fingerprinting with a simple prototype serving as an example. http://www.net-security.org/article.php?id=976