Mailinglist Archive


Ajax Fingerprinting for Web 2.0 Applications
From:Joe Klemmer
Date: Tue, 30 Jan 2007 22:52:51 -0500

Ajax Fingerprinting for Web 2.0 Applications
by Shreeraj Shah - net square - Tuesday, 30 January 2007.

Fingerprinting is an age old concept and one that adds great value to
assessment methodologies. There are several tools available for
fingerprinting operating systems (nmap), Web servers (httprint),
devices, etc. Each one of these tools uses a different method –
inspecting the TCP stack, ICMP responses, HTTP responses. With this
evolution of Web 2.0 applications that use Ajax extensively, it is
important to fingerprint Ajax tools, framework or library used by a
particular web site or a page. This paper describes the method of doing
Ajax fingerprinting with a simple prototype serving as an example.

http://www.net-security.org/article.php?id=976