⚡
  • ПОЧЕТНА
  • НОВОСТИ
  • УСЛУГЕ
  • АРХИТЕКТУРА
  • TECH STACK
  • ПОРТФОЛИО
  • О МЕНИ
  • КОНТАКТ
ПОЧЕТНАНОВОСТИУСЛУГЕАРХИТЕКТУРАTECH STACKПОРТФОЛИОО МЕНИКОНТАКТ
© 2026 Miodrag Gromilić. Sva prava zadrzana.
ПОЧЕТНАНОВОСТИУСЛУГЕTECH STACKПОРТФОЛИОКОНТАКТО МЕНИFAQ
Назад на вештине
OWASP ZAP

OWASP ZAP

Од 2010Web application security testing

Web application security testing — automated vulnerability scanning for XSS, SQL injection, and OWASP Top 10.

Преглед

OWASP ZAP is my web application security testing tool. I run automated scans against staging environments to detect XSS, SQL injection, CSRF, and other OWASP Top 10 vulnerabilities. Integrated into CI/CD for automated security regression testing. I use both passive scanning during development and active scanning before releases.

Случајеви употребе

  • Web app security scanning
  • OWASP Top 10 detection
  • penetration testing
  • CI/CD security gates
  • API security testing

Предности

  • Free and open source
  • comprehensive vulnerability detection
  • CI/CD integration
  • active community
  • API scanning support

Разматрања

  • Can be slow for full scans
  • false positives
  • requires tuning for accuracy
  • complex configuration for advanced use

Одлично ради са

CI/CDDockerJenkinsNginx

Сродне технологије

SonarQube
Од 2007
Trivy
Од 2019
Snyk
Од 2015
Назад на вештине КОНТАКТ