OWASP Mantra Security Framework

OWASP Mantra Security Framework
OWASP Mantra Security Framework
OWASP Mantra Security Framework Logo.jpg
OWASP Mantra Security Framework Screenshot.jpg
OWASP Mantra Security Framework Screenshot under Windows 7 environment
Slogan "Hack3r's browser"
Developer(s) Team Mantra
Initial release 5 December 2010 (2010-12-05)
Stable release

0.71 release named c0c0n 11 and AppSecLatam 11

/ 8 October 2011; 41 days ago (2011-10-08)
Operating system Cross-platform
Engine Gecko
Size 43.7 MB – Windows[1]
57.1 MB – Mac OS X[1]
51.8 MB – GNU/Linux (i686)[1]
40.3 MB – GNU/Linux (x86_64)[1]
64 MB – source code[1]
Development status Active
Type Web browser
License GNU GPL
Website getmantra.com

Mantra is a free and open source security toolkit with a collection of hacking tools, add-ons and scripts based on Firefox[2] intended for penetration testers[3], web application developers and security professionals etc.

Contents

Purpose

The intention behind developing Mantra was to provide security professionals a platform for manual web application penetration testing environment by utilizing the power of open source software specially the lesser known add-ons by using day to day updated large number of exploit that don't use to be easy to include in any automated vulnerability scanner.

Platform Supported

Mantra is cross platform and flexible allows freedom to be used on Microsoft Windows, Linux or in Macintosh.

History

Seeing the significance for such a toolkit for penetration testing and vulnerability assessment, Abhi M Balakrishnan initialised the project in October 2010 with Gokul C Gopinath.It became listed as an OWASP project in March 2011[4] and included in BackTrack 5 Linux security distribution in May 2011 soon after its first public beta 0.52[5] ClubHack release in December 2010.[6] On 15 June 2011 FireCat[7] officially integrated with Mantra.[8][9] Matriux Krypton released it as part of their Arsenal on 15 August 2011.

Team Mantra have released a pre-alpha version of MoC [10][11][12] that is based on Google Chrome on the 2nd day of September 2011

OWASP Mantra Security Framework in Matriux Krypton
OWASP Mantra Security Framework in BackTrack5

Tools

+Information Gathering

- Whois
- Location Info
- Enumeration and Fingerprint
- Data Mining

+Editors

- Cert Viewer Plus
- Firebug
- JSView

+Network Utilities

- Protocols and applications
- Sniffers
- Password

+Miscellaneous

- Tweaks and Hacks
- Malware scanner
- Automation
- Others

+Application Auditing

- Hackbar
- JavaScript Deobfuscator
- RESTClient
- Tamper Data
- Live HTTP Headers
- RefControl
- User Agent Switcher
- Web Developer
- DOM Inspector
- Inspect This
- Formfox
- Exploit Me
- Cookies

+Proxy

- FoxyProxy Standard 2.22.6
- HttpFox

Team

Abhi M Balakrishnan - Project Leader
Gokul C Gopinath - Team Leader
Yashartha Chaturvedi - Project Manager
Gopu C Gopinath - Design Head

See also

BackTrack 5
Matriux OS
ClubHack 2010
ClubHack Magazine

References

External links

Download OWASP Mantra Security Framework
Mantra official page
Mantra at Sourceforge.net
Mantra at Google Code

External links


Wikimedia Foundation. 2010.

Игры ⚽ Поможем написать курсовую

Share the article and excerpts

Direct link
Do a right-click on the link above
and select “Copy Link”