OWASP ZAP

OWASP ZAP

OWASP
+
+

Related Products

  • Aikido Security
    231 Ratings
    Visit Website
  • Astra Pentest
    254 Ratings
    Visit Website
  • Jscrambler
    40 Ratings
    Visit Website
  • ZeroPath
    2 Ratings
    Visit Website
  • Feroot
    30 Ratings
    Visit Website
  • Carbide
    88 Ratings
    Visit Website
  • KrakenD
    71 Ratings
    Visit Website
  • Parasoft
    143 Ratings
    Visit Website
  • Gaffa
    4 Ratings
    Visit Website
  • DataImpulse
    30 Ratings
    Visit Website

About

OWASP ZAP (Zed Attack Proxy) is a free, open-source penetration testing tool being maintained under the umbrella of the Open Web Application Security Project (OWASP). ZAP is designed specifically for testing web applications and is both flexible and extensible. At its core, ZAP is what is known as a “man-in-the-middle proxy.” It stands between the tester’s browser and the web application so that it can intercept and inspect messages sent between browser and web application, modify the contents if needed, and then forward those packets on to the destination. It can be used as a stand-alone application, and as a daemon process. ZAP provides functionality for a range of skill levels – from developers, to testers new to security testing, to security testing specialists. ZAP has versions for each major OS and Docker, so you are not tied to a single OS. Additional functionality is freely available from a variety of add-ons in the ZAP Marketplace, accessible from within the ZAP client.

About

Enterprise vulnerability scanner for Android and iOS apps. It offers app owners and developers the ability to secure each new version of a mobile app by integrating Oversecured into the development process.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

A Security Testing application for DevOps teams or companies

Audience

Android and iOS app owners and developers

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

OWASP
Founded: 2001
United States
www.zaproxy.org

Company Information

Oversecured
Founded: 2020
United States
oversecured.com

Alternatives

Caido

Caido

Caido Labs Inc.

Alternatives

Invicti

Invicti

Invicti Security
Q-mast

Q-mast

Quokka
Burp Suite

Burp Suite

PortSwigger
Invicti

Invicti

Invicti Security

Categories

Categories

Automated Testing Features

Hierarchical View
Move & Copy
Parameterized Testing
Requirements-Based Testing
Security Testing
Supports Parallel Execution
Test Script Reviews
Unicode Compliance

Mobile App Development Features

Access Controls / Permissions
Any App Development Language
Collaboration Tools
Compatibility Testing
Data Modeling
Debugging
Drag and Drop Editor
Enterprise Mobility (EMM/MAM)
FaceID and TouchID
For Consumer Apps
For Enterprise Apps
Integration Options
Mobile App Security
Multi-Factor Authentication (MFA)
Multiple Apps from Same Base
No Dependencies
No-Code
Reporting / Analytics
Single Sign-On (SSO)
Source Control
Visual Editor

Vulnerability Management Features

Asset Discovery
Asset Tagging
Network Scanning
Patch Management
Policy Management
Prioritization
Risk Management
Vulnerability Assessment
Web Scanning

Vulnerability Scanners Features

Asset Discovery
Black Box Scanning
Compliance Monitoring
Continuous Monitoring
Defect Tracking
Interactive Scanning
Logging and Reporting
Network Mapping
Perimeter Scanning
Risk Analysis
Threat Intelligence
Web Inspection

Integrations

CircleCI
CyCognito
Dradis
FuzzDB
Gradle
Hexway Pentest Suite
IriusRisk
Jenkins
Jit
Kondukto
Nucleus
Parasoft
Phoenix Security
Prancer
Seconize DeRisk Center
Seeker
Sn1per Professional
Subject7
ThreadFix
Travis CI

Integrations

CircleCI
CyCognito
Dradis
FuzzDB
Gradle
Hexway Pentest Suite
IriusRisk
Jenkins
Jit
Kondukto
Nucleus
Parasoft
Phoenix Security
Prancer
Seconize DeRisk Center
Seeker
Sn1per Professional
Subject7
ThreadFix
Travis CI
Claim OWASP ZAP and update features and information
Claim OWASP ZAP and update features and information
Claim Oversecured and update features and information
Claim Oversecured and update features and information