OWASP ZAP

OWASP ZAP

OWASP
+
+

Related Products

  • Aikido Security
    127 Ratings
    Visit Website
  • Astra Pentest
    222 Ratings
    Visit Website
  • ZeroPath
    2 Ratings
    Visit Website
  • Carbide
    88 Ratings
    Visit Website
  • KrakenD
    71 Ratings
    Visit Website
  • NetNut
    578 Ratings
    Visit Website
  • Jscrambler
    33 Ratings
    Visit Website
  • DataDome
    223 Ratings
    Visit Website
  • Parasoft
    137 Ratings
    Visit Website
  • UTunnel VPN and ZTNA
    118 Ratings
    Visit Website

About

OWASP ZAP (Zed Attack Proxy) is a free, open-source penetration testing tool being maintained under the umbrella of the Open Web Application Security Project (OWASP). ZAP is designed specifically for testing web applications and is both flexible and extensible. At its core, ZAP is what is known as a “man-in-the-middle proxy.” It stands between the tester’s browser and the web application so that it can intercept and inspect messages sent between browser and web application, modify the contents if needed, and then forward those packets on to the destination. It can be used as a stand-alone application, and as a daemon process. ZAP provides functionality for a range of skill levels – from developers, to testers new to security testing, to security testing specialists. ZAP has versions for each major OS and Docker, so you are not tied to a single OS. Additional functionality is freely available from a variety of add-ons in the ZAP Marketplace, accessible from within the ZAP client.

About

StackHawk tests your running applications, services, and APIs for security vulnerabilities that your team has introduced as well as exploitable open source security bugs. Automated test suites in CI/CD are the norm for today’s engineering teams. Why should application security be any different? StackHawk is built to check for vulnerabilities in your pipeline. Built for developers is more than a tagline. It is the ethos of StackHawk. Application security has shifted left and developers need a tool for reviewing and fixing security findings. With StackHawk, application security can keep up with the pace of today’s engineering teams. Find vulnerabilities at the pull request and quickly push out fixes, all while yesterday’s security tools are waiting for someone to kick off a manual scan. A security tool that developers love to use, powered by the world’s most widely used open source security scanner.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

A Security Testing application for DevOps teams or companies

Audience

Developer teams looking for an API and application security solution to test their running applications and services

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version
Free Trial

Pricing

$99 per month
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

OWASP
Founded: 2001
United States
www.zaproxy.org

Company Information

StackHawk
Founded: 2019
United States
www.stackhawk.com

Alternatives

Caido

Caido

Caido Labs Inc.

Alternatives

Acunetix

Acunetix

Invicti Security
Burp Suite

Burp Suite

PortSwigger
Invicti

Invicti

Invicti Security
PT Application Inspector

PT Application Inspector

Positive Technologies

Categories

Categories

Integrations

Docker
Amazon Web Services (AWS)
Azure Pipelines
Concourse
Datadog
FuzzDB
GitHub
GitLab
Hexway Pentest Suite
IriusRisk
Jira
Nucleus
Parasoft
Phoenix Security
Prancer
Slack
Subject7
Travis CI
Tromzo
ZAP Data Hub

Integrations

Docker
Amazon Web Services (AWS)
Azure Pipelines
Concourse
Datadog
FuzzDB
GitHub
GitLab
Hexway Pentest Suite
IriusRisk
Jira
Nucleus
Parasoft
Phoenix Security
Prancer
Slack
Subject7
Travis CI
Tromzo
ZAP Data Hub
Claim OWASP ZAP and update features and information
Claim OWASP ZAP and update features and information
Claim StackHawk and update features and information
Claim StackHawk and update features and information