-
Notifications
You must be signed in to change notification settings - Fork 10
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
Yang-Nankai
committed
Nov 14, 2024
1 parent
1443442
commit f11f134
Showing
3 changed files
with
21 additions
and
2 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,19 @@ | ||
# SE2FA - Website 2FA Security Evaluation Framework | ||
|
||
SE2FA is a framework designed for evaluating the security of website 2FA systems. This repository contains the code for two important components that make up the SE2FA framework: | ||
|
||
## Components | ||
|
||
### 1. **2FA Spider** | ||
The 2FA Spider is a crawler that uses a meta search engine to discover websites that support 2FA, including relevant 2FA documentation. It helps in automatically identifying and cataloging websites with 2FA implementations for further security assessment. If you want to run this program, please read the README.md in 2FA Spider Directory. | ||
|
||
### 2. **2FA Extension** | ||
The 2FA Extension is a Google Chrome plugin that accelerates the extraction of 2FA cookies. It offers the following functionalities: | ||
- Capture cookie snapshots | ||
- Compare two cookie snapshots | ||
- Intercept and capture HTTP traffic | ||
|
||
## Framework Architecture | ||
The SE2FA framework consists of these two components working in tandem to assess the security of websites' 2FA mechanisms. Below is an architecture diagram illustrating how the components interact: | ||
|
||
data:image/s3,"s3://crabby-images/f17d4/f17d49eb3ee81983dc81926e028c9406c0eba5be" alt="SE2FA Framework" |