Skip to content

jamfwright/URL_and_User-Agent_Analysis

Repository files navigation

URL_and_User-Agent_Analysis

Tests a URL for different responses based on the user-agent string. This can help expose targeted attacks using exploits based on specific browser or OS version, or alternatively be used for fuzzing.

GUI based on TKinter..

Takes a URL and a text file holding the list of user-agent strings, once per line. The analyzer will request the URL with each provided user-agent string as part of the request header. Responses are compared with the baseline (no user-agent), any different responses are recorded and shown.

For determining risk, it is best to use the user-agent strings that relate to your environment. If you have an all Linux shop, you probably don't need to test Windows based user-agent strings, for example.


Example

alt text

About

Tests a URL for different responses based on the user-agent string. This can help expose targeted attacks using exploits based on specific browser or OS version.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors

Languages