OWASP Zed Attack Proxy(ZAP)是世界上最受欢迎的免费安全工具之一。ZAP可以帮助我们在开发和测试应用程序过程中,自动发现 Web应用程序中的安全漏洞。另外,它也是一款提供给具备丰富经验的渗透测试人员进行人工安全测试的优秀工具。
The source of ZAP website
A collection of ZAP scripts and tips provided by the community - pull requests very welcome!
ZAP Add-ons
Not distributed anymore but allow the existing users of the plugin to use the latest version. Please migrate to:
ZAP add-on containing the web-backdoors and attack files from FuzzDB
This is a collection of ZAProxy Automation Tools and scripts to automate security tests of WEB Applications and WEB Sites
ZAP Website
ZAP test code
The OWASP ZAP Heads Up Display (HUD)