Firefox 瀏覽器附加元件
  • 擴充套件
  • 佈景主題
    • 用於 Firefox
    • 字典與語言套件
    • 其他瀏覽器網站
    • Android 版的附加元件
登入
OWASP Top 10 Ref 預覽

OWASP Top 10 Ref 作者: Libor Benes (Dr. B)

Reference for web application security vulnerabilities testing with test cases and examples. Sourced from the OWASP Foundation. Not a product of, or endorsed by, the OWASP Foundation. • Safe coding. No tracking. No data collection.

0(0 筆評分)0(0 筆評分)
下載 Firefox 並安裝擴充套件
下載檔案

擴充套件後設資料

關於此擴充套件
OWASP Top 10 Ref is a lightweight, privacy-first Firefox extension sidebar reference that provides instant access to OWASP Top 10 security risk test cases — all without ever leaving your browser or sending data anywhere.

🔍 WHAT OWASP TOP 10 REF DOES:
• Provides a clean sidebar with all 10 OWASP 2021 risk categories.
• Each category contains detailed subcategories with test methodologies.
• View concrete attack examples and payloads for each vulnerability.
• One-click access to official OWASP Web Security Testing Guide.
• Instant search filtering by category and subcategory names.
• Auto-expand on search to show matching content.

✨ KEY FEATURES:
• 10 risk categories with expandable subcategories.
• Smart title-only search (focused on concepts, not noise).
• Detailed "How to Test" methodologies for each vulnerability.
• Real attack examples and payloads.
• Direct links to OWASP documentation.
• Clean, responsive interface.
• Extremely lightweight (~48 KB).

🔒 SECURITY-FIRST ARCHITECTURE:
• 100% client-side – No external requests.
• No data collection – Explicitly declared in manifest.json.
• No telemetry, no analytics, no servers.
• No eval() or risky innerHTML – Safe DOM methods only.
• Proper input validation on search.
• Minimal permissions – only clipboardWrite.

📚 COVERAGE (OWASP Top 10 2021):
A01: Broken Access Control
A02: Cryptographic Failures
A03: Injection
A04: Insecure Design
A05: Security Misconfiguration
A06: Vulnerable & Outdated Components
A07: Identification & Authentication Failures
A08: Software & Data Integrity Failures
A09: Security Logging & Monitoring Failures
A10: Server-Side Request Forgery (SSRF)

💡 PERFECT FOR:
• Penetration testers needing quick payload references.
• Developers learning secure coding practices.
• Security engineers conducting assessments.
• Bug bounty hunters seeking test case inspiration.
• Students studying web application security.

🔍 SEARCH BEHAVIOR:
Searches category titles and subcategory titles only (not descriptions). This intentional design avoids excessive noise from common words in descriptions and examples. Search for vulnerability concepts like "injection", "forgery", "authentication", etc., to get focused, relevant results.

Legal & Attribution:
• This is not an official product of, or endorsed by, the OWASP Foundation.
• Content sourced from the OWASP Foundation OWASP Foundation 2021 Top 10 list.
• License: Content is used under the CC BY-SA 4.0 license.
• Trademark Usage: "OWASP" is used as an adjective followed by a noun ("OWASP Top 10 Ref") as required by OWASP trademark guidelines.

OWASP Top 10 Ref – Know the risk. Test with confidence.
由 1 位評論者給出 0 分
登入後即可幫此擴充套件評分
目前沒有評分

已儲存星等

5
0
4
0
3
0
2
0
1
0
還沒有評論
權限與資料

必要權限:

  • 輸入資料到剪貼簿

收集下列資料:

  • 開發者聲稱此擴充套件不要求收集任何資料。
了解更多
更多資訊
附加元件網址
  • 技術支援網站
  • 技術支援信箱
版本
1.0
大小
38.36 KB
最近更新
25 天前 (2026年4月13日)
相關分類
  • 網頁開發
  • 隱私權與安全性
  • 搜尋工具
授權條款
Mozilla Public License 2.0
版本紀錄
  • 瀏覽所有版本
新增至收藏集
檢舉此附加元件
前往 Mozilla 官網

附加元件

  • 關於
  • Firefox 附加元件部落格
  • 擴充套件工作坊
  • 開發者交流中心
  • 開發者政策
  • 社群部落格
  • 討論區
  • 回報 Bug
  • 評論撰寫指南

瀏覽器

  • Desktop
  • Mobile
  • Enterprise

產品

  • Browsers
  • VPN
  • Relay
  • Monitor
  • Pocket
  • Bluesky (@firefox.com)
  • Instagram (Firefox)
  • YouTube (firefoxchannel)
  • 隱私權
  • Cookie
  • 法律資訊

除另有註明外,本站內容皆採用創用 CC 姓名標示—相同方式分享條款 3.0 或更新版本授權大眾使用。