Contrast Assess

Contrast Assess

Contrast Security
OWASP ZAP

OWASP ZAP

OWASP
+
+

Related Products

  • Aikido Security
    148 Ratings
    Visit Website
  • ZeroPath
    2 Ratings
    Visit Website
  • TrustInSoft Analyzer
    6 Ratings
    Visit Website
  • Parasoft
    140 Ratings
    Visit Website
  • Jscrambler
    38 Ratings
    Visit Website
  • Retool
    566 Ratings
    Visit Website
  • groundcover
    32 Ratings
    Visit Website
  • MetaLocator
    24 Ratings
    Visit Website
  • Atera
    3,150 Ratings
    Visit Website
  • Astra Pentest
    225 Ratings
    Visit Website

About

A new kind of security designed for the way software is created. Resolve security issues minutes after installation by integrating security into your toolchain. Because Contrast agents monitor code and report from inside the application, developers can finally find and fix vulnerabilities without requiring security experts. That frees up security teams to focus on providing governance. Contrast Assess deploys an intelligent agent that instruments the application with smart sensors. The code is analyzed in real time from within the application. Instrumentation minimizes the false positives that slow down developers and security teams. Resolve security issues minutes after installation by integrating security into your toolchain. Contrast Assess integrates seamlessly into the software life cycle and into the tool sets that development and operations teams are already using, including native integration with ChatOps, ticketing systems and CI/CD tools, and a RESTful API.

About

OWASP ZAP (Zed Attack Proxy) is a free, open-source penetration testing tool being maintained under the umbrella of the Open Web Application Security Project (OWASP). ZAP is designed specifically for testing web applications and is both flexible and extensible. At its core, ZAP is what is known as a “man-in-the-middle proxy.” It stands between the tester’s browser and the web application so that it can intercept and inspect messages sent between browser and web application, modify the contents if needed, and then forward those packets on to the destination. It can be used as a stand-alone application, and as a daemon process. ZAP provides functionality for a range of skill levels – from developers, to testers new to security testing, to security testing specialists. ZAP has versions for each major OS and Docker, so you are not tied to a single OS. Additional functionality is freely available from a variety of add-ons in the ZAP Marketplace, accessible from within the ZAP client.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Development teams interested in a Interactive Application Security Testing (IAST) solution

Audience

A Security Testing application for DevOps teams or companies

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Contrast Security
Founded: 2014
United States
www.contrastsecurity.com/interactive-application-security-testing-iast

Company Information

OWASP
Founded: 2001
United States
www.zaproxy.org

Alternatives

Alternatives

Caido

Caido

Caido Labs Inc.
Burp Suite

Burp Suite

PortSwigger
Invicti

Invicti

Invicti Security

Categories

Categories

Integrations

Seeker
ThreadFix
Amazon Web Services (AWS)
Axonius
Azure DevOps Server
Bamboo
Blink
CircleCI
Contrast Security
Dradis
Eclipse IDE
Gradle
Java
JavaScript
Jit
Prancer
Seconize DeRisk Center
Splunk Cloud Platform
Sumo Logic

Integrations

Seeker
ThreadFix
Amazon Web Services (AWS)
Axonius
Azure DevOps Server
Bamboo
Blink
CircleCI
Contrast Security
Dradis
Eclipse IDE
Gradle
Java
JavaScript
Jit
Prancer
Seconize DeRisk Center
Splunk Cloud Platform
Sumo Logic
Claim Contrast Assess and update features and information
Claim Contrast Assess and update features and information
Claim OWASP ZAP and update features and information
Claim OWASP ZAP and update features and information