zap Questions

2

Solved

Our customer requires us to run the OWASP ZAP tool against our web application (ASP.NET 4.5.2, Webforms) and we cannot have any high priority findings in the report. We've done the analysis, and O...
Nadeau asked 20/11, 2016 at 13:23

3

How to pass authentication details to the ZAP tool to scan the website. Please help me to solve the problem.
Septima asked 20/7, 2015 at 12:22

1

Solved

I have configured ZAP 2.6 so that it is acting as a proxy for requests from an Android app to a web service over HTTPS. The authentication mechanism is OAuth 2, and so in my login response I get an...
Strunk asked 5/7, 2017 at 15:35

1

Solved

I want to run security scans for few REST APIs. These APIs use OAuth and are divided into two sets each using different Grant Type. I want to run security scan using ZAP tool and I am not able to ...
Fishtail asked 20/6, 2016 at 14:24

1

I have a SPA application (angularjs front end/restfull WebAPI back end). SPA is by design using client routing - i.e. typical "page" looks like http://contosco.com#/page1 http://contosco.com#/pag...
Diamagnetic asked 18/8, 2016 at 14:24

1

Solved

I have started learning OWASP ZAP and I am confused about passive scanning in OWASP ZAP. On right clicking the node in Site tree I do not see any passive scanning option, however under Tools | Opt...
Ology asked 11/3, 2016 at 14:10

2

Solved

After running OWASP ZAP scanning tool against our application, we see a number of XSS vulnerabilities when the tool attacked with this string: " onMouseOver="alert(1); or ;alert(1) So such st...
Daphinedaphna asked 23/5, 2014 at 21:3
1

© 2022 - 2024 — McMap. All rights reserved.