The OWASP Zed Attack Proxy (ZAP) is an easy to use integrated penetration testing tool for finding vulnerabilities in web applications.
It is designed to be used by people with a wide range of security experience and certainly is ideal for developers and functional testers who are new to penetration testing as well as being a useful addition to an experienced pen testers toolbox.
Here are some key features of "OWASP ZAP":
· Intercepting Proxy
· Active scanner
· Passive scanner
· Brute Force scanner
· Spider
· Fuzzer
· Port Scanner
· Dynamic SSL certificates
· API
· Beanshell integration
What's New in This Release: [ read full changelog ]
· Program version fixed.