Owasp Zap

Use and operate OWASP ZAP (Zed Attack Proxy) — the world's most widely used free web application security scanner. Use when performing web application penetration testing, running automated DAST scans, configuring a proxy for manual testing, handling authentication for scans, integrating security scanning into CI/CD pipelines, or comparing ZAP with Burp Suite. Covers installation, proxy setup, spider, active/passive scanning, Ajax Spider, authentication handling, ZAP API, Docker automation scripts (zap-baseline.py, zap-full-scan.py, zap-api-scan.py), scan policies, Zest scripting, and marketplace add-ons. GitHub: https://github.com/zaproxy/zaproxy (14.9k stars).

jperezduerto Updated

File contents

jperezduerto/redhound-arsenal/tree/main/owasp-zap commit d18a3f4cdd

Frequently asked questions

npx skillmds@latest add jperezduerto/owasp-zap