У нас вы можете посмотреть бесплатно ATOR (Authentication Token Obtain and Replace) Burp Plugin - Manikandan Rajappan & Ashwath Kumar или скачать в максимальном доступном качестве, видео которое было загружено на ютуб. Для загрузки выберите вариант из формы ниже:
Если кнопки скачивания не
загрузились
НАЖМИТЕ ЗДЕСЬ или обновите страницу
Если возникают проблемы со скачиванием видео, пожалуйста напишите в поддержку по адресу внизу
страницы.
Спасибо за использование сервиса ClipSaver.ru
ATOR (Authentication Token Obtain and Replace) Burp Plugin - V3 Description These days most web applications are based on JavaScript frameworks (such as Angular, React, VueJS etc.). The frameworks provide authentication mechanisms such as Auth tokens, JWT out of the box. Though this makes developement of Web applications & mobile apps easy, it is difficult to automate testing. There is no out of the box functionality from Burp Enterprises or other proxy tools to solve complex authentication mechanisms. To solve such complex auth., we developed ATOR in May 2020. The plugin is loved by many bug bounty researchers and has got 64 stars on GitHub. The current plusin is a little hard to set up fro the UI perspective, though it gets the job done. Debugging token replacement is also a little difficult. ATOR v3 solves all configuration difficulties and some new features like OTP validation automation. Manikandan Rajappan Lead Security Engineer, Razorpay Manikandan is a Lead Security Engineer at Razorpay. He is interested in application security, API security, and cloud security. He loves to build a tools in security ecosystem that helps pentesters, developer and security operation.Speaker at BlackHat (USA). Find him on linkedin at / mani2raj . Ashwath Kumar Principal Engineer, Razorpay Ashwath currently works as a Principal Engineer at Razorpay. He has previously worked at Synopsys and Microsoft Corp. His interests are in Cloud Security, Red teaming, Application security (Web Applications) and Threat Modeling. He has released plugins for Burp to handle complex authentication mechanisms . He has presented at Blackhat, OWASP SG, Nullcon, Cocon, Bright Talk, 50p (HasGeek), Rootconf, FS-Isac and technical conferences conducted by SAP, IAF, Infosys, NetApp amongst others. - Managed by the OWASP® Foundation https://owasp.org/