OWASP ZAP

OWASP ZAP

OWASP
+
+

Related Products

  • Parasoft
    137 Ratings
    Visit Website
  • MuukTest
    33 Ratings
    Visit Website
  • Aikido Security
    127 Ratings
    Visit Website
  • ZeroPath
    2 Ratings
    Visit Website
  • Boozang
    15 Ratings
    Visit Website
  • Jscrambler
    33 Ratings
    Visit Website
  • DataDome
    223 Ratings
    Visit Website
  • JetBrains Junie
    2 Ratings
    Visit Website
  • TrustInSoft Analyzer
    6 Ratings
    Visit Website
  • qTest
    Visit Website

About

Our platform uses various security techniques, including coverage-guided and feedback-based fuzz testing, to automatically generate millions of test cases that trigger hard-to-find bugs deep within your application. This white-box approach protects against edge cases and speeds up development. Advanced fuzzing engines generate inputs that maximize code coverage. Powerful bug detectors check for errors during code execution. Uncover true vulnerabilities only. Get the input and stack trace as proof, so you can reliably reproduce errors every time. AI white-box testing uses data from all previous test runs to continuously learn the inner-workings of your application, triggering security-critical bugs with increasingly high precision.

About

OWASP ZAP (Zed Attack Proxy) is a free, open-source penetration testing tool being maintained under the umbrella of the Open Web Application Security Project (OWASP). ZAP is designed specifically for testing web applications and is both flexible and extensible. At its core, ZAP is what is known as a “man-in-the-middle proxy.” It stands between the tester’s browser and the web application so that it can intercept and inspect messages sent between browser and web application, modify the contents if needed, and then forward those packets on to the destination. It can be used as a stand-alone application, and as a daemon process. ZAP provides functionality for a range of skill levels – from developers, to testers new to security testing, to security testing specialists. ZAP has versions for each major OS and Docker, so you are not tied to a single OS. Additional functionality is freely available from a variety of add-ons in the ZAP Marketplace, accessible from within the ZAP client.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Developers interested in an automated application security solution

Audience

A Security Testing application for DevOps teams or companies

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Code Intelligence
Germany
www.code-intelligence.com

Company Information

OWASP
Founded: 2001
United States
www.zaproxy.org

Alternatives

go-fuzz

go-fuzz

dvyukov

Alternatives

Caido

Caido

Caido Labs Inc.
Mayhem

Mayhem

ForAllSecure
LibFuzzer

LibFuzzer

LLVM Project
Burp Suite

Burp Suite

PortSwigger
Atheris

Atheris

Google
CI Fuzz

CI Fuzz

Code Intelligence

Categories

Categories

Application Security Features

Analytics / Reporting
Open Source Component Monitoring
Source Code Analysis
Third-Party Tools Integration
Training Resources
Vulnerability Detection
Vulnerability Remediation

Integrations

Docker
Apache Maven
Blink
C
C++
CLion
CircleCI
GitHub
Gradle
Hexway Pentest Suite
IriusRisk
JUnit
Jenkins
Jira
Kondukto
Seeker
Subject7
ThreadFix
Travis CI
Visual Studio

Integrations

Docker
Apache Maven
Blink
C
C++
CLion
CircleCI
GitHub
Gradle
Hexway Pentest Suite
IriusRisk
JUnit
Jenkins
Jira
Kondukto
Seeker
Subject7
ThreadFix
Travis CI
Visual Studio
Claim Code Intelligence and update features and information
Claim Code Intelligence and update features and information
Claim OWASP ZAP and update features and information
Claim OWASP ZAP and update features and information