OWASP Penetration Testing Kit
OWASP PTK: All-In-One Pen Testing Browser Extension
The 'OWASP Penetration Testing Kit' is a comprehensive Chrome extension tailored for security professionals. It integrates DAST, SCA, and JWT inspection into your browser for enhanced testing efficiency. Discover vulnerabilities right from your browser, craft HTTP requests with R-Builder, analyze security with JWT Inspector, manage cookies, and encode or decode data. Additionally, PTK's traffic log proxy and integrations with Swagger.IO and Selenium facilitate a more robust security workflow.
Extension stats
Manifest V3
Permissions:
- activeTab
- cookies
- notifications
- storage
- unlimitedStorage
- tabs
- webRequest
- background
- debugger
- scripting
Host permissions:
- <all_urls>
- *://*/*
Size: 7.49M
Email: de*****@gmail.com
URLs: Website ,Privacy policy
Full description: See detailed description
Ranking
Other platforms
Not available on Android
User reviews
Pros
- User-friendly tools for modified requests (Request Builder)
- Effective JWT Inspector for securing token-based authentication
- Request Attacker is efficient in finding XSS and SQL Injection vulnerabilities
- SCA scan with reporting provides comprehensive insights for enhanced security
- Overall positive experience and satisfaction with the extension
Cons
- Does not work on Arc browser
Most mentioned
- Request Builder
- JWT Inspector
- Request Attacker
- SCA scan with reporting
- Overall excellent functionality and user experience
User reviews
Works on Chrome and other Chrome-based browsers. Sadly, won't work on Arc browser :(
by
Dan Cristino, 2024-08-31
Helpful stuff thanks!
by
Przemysław Samsel, 2024-04-13
Wonderful extension
by
gideon adavize, 2024-01-26
Extension safety
Risk impact
OWASP Penetration Testing Kit requires a lot of sensitive permissions. Exercise caution before installing.
Risk impact analysis details
- Critical Allows for debugging of other web apps and extensions, which can intersect with sensitive information and security boundaries.
- Critical ****** ****** ** ******* ***** ***** *** ** **** ** ***** **** ******** ****** *** ******** ********** * ******* ********
- Critical ****** ****** ** *** ********* ****** * *********** ******** **** ** ** *** ******* *** ****** **** **** *** ******* *****
- High ******* ******* **** *** ****** ***** *** ***** ** ******* **** ********* ********* ** * *********** *****
- Medium ******* ******* ************* ***** *** ** ******* *** **** ******* ****** ******** *******
- Low ******* ****** ** *** ********* ********
Risk likelihood
We don't have sufficient data to confidently determine the risk likelihood of OWASP Penetration Testing Kit. Use it at your own risk.
Risk likelihood analysis details
- High This extension publisher URL may be invalid
- High **** ********* ******* *** *** ** *******
- High **** ********* ******* ****** *** *** ** *******
- High **** ********* *** *** **** ****** ********* ********** *** *** ** ****** ** *****
- Low **** ********* *** ******* **** **** * ****** **** ***** ******** *** **** ****** ** ** ****** *** *****
- Low **** ********* *** ***** **** **** * ****** **** ***** ********** *** **** ****** ** ** ****** *** *****
- Good **** ********* *** **** **** *******
Upgrade to see full risk analysis details
Promo images
Similar extensions
Here are some Chrome extensions that are similar to OWASP Penetration Testing Kit:
Ludovic COULON & Riadh BOUCHAHOUA
30K
0140454
80K
vankyver
9K
totofish2021
2K
FreeMedian
1,000
https://cyberwebtools.com
862
alizano1985
1,000
knownseczoomeye
3K
acc+browserext
1,000
dharris
330
DoomSec
575
Jack Kingsman
3K