OWASP Mantra - Security Framework

Main
= Overview =




 * Mantra is a collection of free and open source tools integrated into a web browser, which can become handy for students, penetration testers, web application developers,security professionals etc. It is portable, ready-to-run, compact and follows the true spirit of free and open source software.
 * Mantra is lite, flexible, portable and user friendly with a nice graphical user interface. You can carry it in memory cards, flash drives, CD/DVDs, etc. It can be run natively on Linux, Windows and Mac platforms. It can also be installed on to your system within minutes. Mantra is absolutely free of cost and takes no time for you to set up.

= Project Goals =


 * 1) Create an ecosystem for hackers based on browser
 * 2) To bring the attention of security people to the potential of a browser based security platform
 * 3) Provide easy to use and portable platform for demonstrating common web based attacks( read training )
 * 4) To associate with other security tools/products to make a better environment. Eg:
 * 5) It can be a nice addition to security distribution OSs like OWASP Live CD
 * 6) It can be used to solve basic levels of CTF contests
 * 7) It can associate with projects like DVWA to showcase attacks
 * 8) It can bring functions like crawler, SQL injection scanner etc by installing extensions.

= Main Links =

Download Mantra - Security Framework


 * Conference Video 1
 * Conference Video 2
 * Conference Video 3


 * Article/Publication

Ayudha
Mantra is a powerful set of tools to make the attacker's task easier. The beta version of Mantra Security Toolkit contains following tools built onto it. Moreover Mantra follows the guidelines and structure of FireCAT which makes it even more accessible. You can also always suggest any tools/ scripts that you would like see in the next release.

'' +Information Gathering +Whois -Flagfox +Location Info -Flagfox +Enumeration and Fingerprint -Host Spy -JSView -PassiveRecon -View Dependencies -Wappalyzer +Data Mining -People Search Engine -Facebook search +Editors -Cert Viewer Plus -Firebug -JSView

+Network Utilities +Protocols and applications +FTP -Fire FTP +DNS -DNS Cache +SQL -SQLite Manager +Sniffers -HTTP Fox +Password -CryptoFox 2.0

+Misc +Tweaks and Hacks -Greasemonkey +Scripts -Greasefir +Malware scanner -Web of Trust +Automation -iMacros +Others -CacheToggle 0.6 -URL Flipper +Application Auditing -Hackbar -JavaScript Deobfuscator -RESTClient -Tamper Data -Live HTTP Headers -RefControl -User Agent Switcher -Web Developer -DOM Inspector -Inspect This -Formfox +Exploit Me -Access Me -SQL Inject Me -XSS Me +Cookies -Cookies Manager+ 1.5.1 -Firecookie

+Proxy -FoxyProxy Standard 2.22.6 -HttpFox ''