2021-10-07 02:16:01 -04:00
|
|
|
|
### Are links vulnerable to MITM attack?
|
|
|
|
|
|
|
|
|
|
`Scan FQDN using API`
|
|
|
|
|
|
|
|
|
|
![](../image/ismmpreview.jpg)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
```
|
|
|
|
|
|
|
|
|
|
You′ve found something on the internet.
|
|
|
|
|
Are these links or images vulnerable to MITM attack or not?
|
|
|
|
|
|
2021-10-16 20:17:40 -04:00
|
|
|
|
This add-on is using[1] public[4] API to scan[3] FQDN.
|
2021-11-05 05:34:23 -04:00
|
|
|
|
WE DO NOT COLLECT THIS DATA.
|
2021-10-07 02:16:01 -04:00
|
|
|
|
e.g. https://ekzemplo.com/page.html → "ekzemplo.com"
|
|
|
|
|
|
|
|
|
|
This add-on never send other information.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
[1] How to use offline database
|
|
|
|
|
1. Open add-on's option page and select "Use Offline Local Database".
|
|
|
|
|
2. Click "Database" link.
|
2021-10-16 20:18:39 -04:00
|
|
|
|
3. Create a new text file[2] (or download text file from git)
|
2021-10-07 02:16:01 -04:00
|
|
|
|
4. Click "Import Database" and select your text file.
|
|
|
|
|
5. Wait until the message appear.
|
|
|
|
|
|
|
|
|
|
[2] Text file example
|
|
|
|
|
(FQDN/Domain)
|
|
|
|
|
--------------------
|
|
|
|
|
www.cloudflare.com
|
|
|
|
|
domain.com
|
|
|
|
|
example.org
|
|
|
|
|
--------------------
|
|
|
|
|
|
|
|
|
|
[3] "Observe and Learn" mode
|
|
|
|
|
If you don't want to use online public API, or don't want to maintain offline database
|
|
|
|
|
this option is for you.
|
|
|
|
|
You'll have to visit cloudflared website first because this add-on never make a
|
|
|
|
|
request to websites.
|
|
|
|
|
To activate this option, go to "Database" section and select "Use offline local database".
|
|
|
|
|
To purge local database, go to "Database" section and click "Database", "Clear all data".
|
|
|
|
|
|
|
|
|
|
[4] Public API services
|
|
|
|
|
You can select which API service you want to use.
|
2021-10-16 20:17:40 -04:00
|
|
|
|
Additionally you can self-host and use your own API.
|
2021-10-07 02:16:01 -04:00
|
|
|
|
|
|
|
|
|
```
|
|
|
|
|
|
|
|
|
|
|
2021-10-07 02:18:06 -04:00
|
|
|
|
- [Code](https://git.disroot.org/dCF/deCloudflare/src/branch/master/addons/code/ismitmlink)
|
2021-10-14 07:03:24 -04:00
|
|
|
|
- [API Self-host Guide](../tool/api_for_ismm_isat/)
|
2021-10-07 02:16:01 -04:00
|
|
|
|
- Download add-on
|
2021-10-07 02:18:06 -04:00
|
|
|
|
- From Gitea: [FirefoxESR](https://git.disroot.org/dCF/deCloudflare/raw/branch/master/addons/releases/ismm.xpi) / [Chromium / Edge](https://git.disroot.org/dCF/deCloudflare/raw/branch/master/addons/releases/ismm.crx)
|