The Zed Attack Proxy (ZAP) is an easy to use integrated penetration testing tool for finding vulnerabilities in web applications.

Note that this project is no longer used for hosting the ZAP downloads.
You should download ZAP via https://github.com/zaproxy/zaproxy/wiki/Downloads
Please see the homepage for more information about OWASP ZAP

Features

  • Intercepting Proxy
  • Traditional and AJAX Spiders
  • Active and Passive scanners
  • Fuzzing
  • .. and much more

Project Samples

Project Activity

See All Activity >

License

Apache License V2.0

Follow OWASP Zed Attack Proxy

OWASP Zed Attack Proxy Web Site

Other Useful Business Software
MongoDB Atlas runs apps anywhere Icon
MongoDB Atlas runs apps anywhere

Deploy in 115+ regions with the modern database for every enterprise.

MongoDB Atlas gives you the freedom to build and run modern applications anywhere—across AWS, Azure, and Google Cloud. With global availability in over 115 regions, Atlas lets you deploy close to your users, meet compliance needs, and scale with confidence across any geography.
Start Free
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of OWASP Zed Attack Proxy!

Additional Project Details

Intended Audience

Developers, Quality Engineers, Security, Security Professionals, Testers

User Interface

Java Swing

Programming Language

Java

Related Categories

Java Security Software, Java Penetration Testing Tool

Registered

2013-12-10