LAN port scan forbidder 作者: GarryW
Forbid non-LAN webs to access LAN or localhost. An anti-scan protection
您需要 Firefox 来使用此扩展
扩展元数据
屏幕截图
关于此扩展
Forbid untrusted web to scan localhost or LAN. Browser addon.
What
Webs can try to fetch
Although browsers have cross-domain protections, webs can't read response contents, but can still see the connection succeeds or fails.
There're already reports that some websites using that as tracking fingerprint.
So
Forbid any website behaviors trying to connect to your LAN or localhost, if user is visiting the website via their domains or public IP addresses. (Read the source code
Notification
User can enable notification. When untrusted web tries to access private network and get blocked, will show up notification.
Fallback operation
If user find a web broken, user can temporary set this addon disabled via toolbar button for:
(above can be set as keyboard shortcuts)
there's showy toolbar button badge indicating disabling status.
Cases when web LAN scan is properly used
Not all LAN-port-scan are evil.
What
Webs can try to fetch
127.0.0.1:xxxx
or 192.168.Y.Z:xxxx
to scan your open ports in LAN.Although browsers have cross-domain protections, webs can't read response contents, but can still see the connection succeeds or fails.
There're already reports that some websites using that as tracking fingerprint.
A web for testing: http://samy.pl/webscan/
So
Forbid any website behaviors trying to connect to your LAN or localhost, if user is visiting the website via their domains or public IP addresses. (Read the source code
background.js
to see the logic)Using JS library whitequark/ipaddr.js (MIT License) v2.0.0 to judge IP range.
Notification
User can enable notification. When untrusted web tries to access private network and get blocked, will show up notification.
Fallback operation
If user find a web broken, user can temporary set this addon disabled via toolbar button for:
- this one tab
- this one tab and new tabs opened by this tab
- this one window (Firefox only)
- globally
(above can be set as keyboard shortcuts)
there's showy toolbar button badge indicating disabling status.
Cases when web LAN scan is properly used
Not all LAN-port-scan are evil.
- Some manufacturers provide web for user's browser to scan LAN for their product that need updating.
- Some softwares use
127.0.0.1
communication to interact between native program and web.
为您的体验打分
权限详细了解
此附加组件需要:
- 存取浏览器标签页
- 存取您在所有网站的数据
此附加组件可能也会要求:
- 为您显示通知
更多信息
添加到收藏集
0.6.2 的发布说明
improve notification
GarryW 制作的更多扩展
- 目前尚无评分
- 目前尚无评分
- 目前尚无评分
- 目前尚无评分
- 目前尚无评分
- 目前尚无评分