
JS Recon Buddy 作者: JSReconBuddy
A simple browser extension to quickly find interesting security-related information on a webpage.
1 个用户1 个用户
您需要 Firefox 来使用此扩展
扩展元数据
屏幕截图


关于此扩展
The scanner uses a set of regex patterns to identify and categorize potential security-related information:
- Subdomains - discovers related subdomains within the code.
- Endpoints & Paths - uncovers potential API endpoints and other useful paths.
- Potential Secrets - scans for API keys, tokens, and other sensitive data using pattern matching and Shannon entropy checks.
- Potential DOM XSS Sinks - identifies dangerous properties and functions like .innerHTML and document.write.
- Interesting Parameters - flags potentially vulnerable URL parameters (e.g., redirect, debug, url).
- Source Maps - finds links to source maps which can expose original source code.
If it is a valid source map, the extension tries to deconstruct source files based on data there
- JS Libraries - lists identified JavaScript libraries and their versions.
评分 0(1 位用户)
权限与数据详细了解
必要权限:
- 获取浏览器标签页
- 获知浏览器导航时的行为状态
可选权限:
- 访问您在所有网站的数据
更多信息
JSReconBuddy 制作的更多扩展
- 目前尚无评分
- 目前尚无评分
- 目前尚无评分
- 目前尚无评分
- 目前尚无评分
- 目前尚无评分