OWASP Zed Attack Proxy (ZAP) is an easy-to-use integrated penetration testing tool for finding vulnerabilities in Web applications. It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who are new to penetration testing as well as being a useful addition to an experienced pen tester's toolbox. ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually.

Release Notes: An online marketplace, new traditional and AJAX spiders, Web sockets support, and many other changes.

Screenshot

Tags: Proxy, Testing, hacking, penetration, developers, owasp

Licenses: Apache 2.0