clearHTTPStatus

Prevents the abuse of HTTP status code
Download

clearHTTPStatus Ranking & Summary

Advertisement

  • Rating:
  • License:
  • GPL
  • Publisher Name:
  • Kailas
  • File Size:
  • 5 KB

clearHTTPStatus Tags


clearHTTPStatus Description

Malicious sites can automatically and silently determine if you are logged into some particular site of attacker's interest. Malicious sites can send cross sites request and use HTTP status code in the response to identify whether user is logged into the victim site or not. clearHTTPStatus is a Firefox addon designed to prevent the abuse of the HTTP status code. For example, HTML SCRIPT tag fires "onload" event if HTTP response from a victim server contains a 200 HTTP status code. And fires "onerror" event if the HTTP response from victim server contains one of 403, 404, 406 or 500 HTTP status code.


clearHTTPStatus Related Software