Google
Google is releasing its RatProxy testing tool

Google open sources RatProxy security tool

Web sniffer made available to all

Shaun Nichols in San Francisco

Google has released the source code for its internal RatProxy security tool.

The software analyses web pages for potential security risks and reports back to the site administrator.

Advertisement

RatProxy can pick up cross-site scripting flaws and incomplete cross-site defence mechanisms, as well as potential data leak sources and risky code that retrieves data from outside domains.

Google hopes that developers will put the tool to use when coding new web-based services that rely on multiple sites and outside sources for data.

Michal Zalewski, a security engineer at Google, warned, however, that the tool should not be considered a substitute for a thorough analysis by a security professional.

"We feel it will be a valuable contribution to the information security community, helping to advance the understanding of security challenges associated with contemporary web technologies," he said.

Responsible security research brings a net overall benefit to the safety of the web as a whole

Michal Zalewski Google

"We believe that responsible security research brings a net overall benefit to the safety of the web as a whole, and have released this tool explicitly to support that kind of research."

Users can download RatProxy from the Google Code site. The tool works on Windows, Linux, FreeBSD and MacOS X operating systems.

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Do you agree?

Further reading

Spam

Spammers exploit Google Docs

Cyber-crooks turn to mainstream hosted services

Linux

Open source security improving rapidly

Two-year quality analysis studied 250 popular applications

Google security tool goes beyond the network

Browser monitoring extended to roaming users and off-site workers

Sloppy developers blamed for SQL attacks

Security not being built-in to applications, warns Fortify

Related whitepapers

Related jobs

Most watched

eu flag

V3.co.uk weekly debrief, 6 Nov 09

This week, Europe decides what to do with illegal file sharers

Intel unveils its micro server platform

Small-enclosure systems take aim at hosting market

IT white papers

Search white papers

Top categories

Poll

Impact of Information Overload poll

Impact of Information Overload poll

What is the biggest problem your firm faces as a result of the data explosion?

View poll results

Advertisement

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Spotlight

Top 10 cup

Top 10 technologies in a death spiral

A look at some technologies that may soon be departed

Thunderbird

Thunderbird 3 out this month

Open source email system gets a makeover

Best Buy to storm Blighty's stores

Now that Circuit City is gone, Best Buy's ruling the...

Internet Explorer

Europe's browser war heats up again

Mozilla and Opera demand changes to Microsoft's proposed ballot system

Primary Navigation