You'll have to copy the executables to somewhere in your PATH (like /usr/bin or something) I don't know if its just the executables that are needed, I'm assuming so right now because I haven't had time to play around except for testing one of the sites I manage to see that ratproxy runs as it should. It did work and my site is vulnerable :/
Running the ratproxy makes it start listening on port 8080 by default (use ratproxy --help to see all the different switches)
Set the device to use proxy on 127.0.0.1 port 8080 in the connectivity settings in the connection applet (you know, where you select the wlan you want to connect to), you edit your connection to get to the wizard then next, next to get to the Advanced button, there you can set the device-wide proxy to use.
Description of ratproxy:
A semi-automated, largely passive web application security audit tool, optimized for an accurate and sensitive detection, and automatic annotation, of potential problems and security-relevant design patterns based on the observation of existing, user-initiated traffic in complex web 2.0 environments.
Detects and prioritizes broad classes of security problems, such as dynamic cross-site trust model considerations, script inclusion issues, content serving problems, insufficient XSRF and XSS defenses, and much more.
This is essentially what you get after compiling the ratproxy source.
Download here: http://rapidspread.com/file.jsp?id=q29cpa9aci
or here: http://www.megaupload.com/?d=PU15TQMG
You'll have to copy the executables to somewhere in your PATH (like /usr/bin or something) I don't know if its just the executables that are needed, I'm assuming so right now because I haven't had time to play around except for testing one of the sites I manage to see that ratproxy runs as it should. It did work and my site is vulnerable :/
Running the ratproxy makes it start listening on port 8080 by default (use ratproxy --help to see all the different switches)
Set the device to use proxy on 127.0.0.1 port 8080 in the connectivity settings in the connection applet (you know, where you select the wlan you want to connect to), you edit your connection to get to the wizard then next, next to get to the Advanced button, there you can set the device-wide proxy to use.
Description of ratproxy:
A semi-automated, largely passive web application security audit tool, optimized for an accurate and sensitive detection, and automatic annotation, of potential problems and security-relevant design patterns based on the observation of existing, user-initiated traffic in complex web 2.0 environments.
Detects and prioritizes broad classes of security problems, such as dynamic cross-site trust model considerations, script inclusion issues, content serving problems, insufficient XSRF and XSS defenses, and much more.