Thursday, June 27, 2019

OWASP ZAP RELEASES V2.8.0 WITH THE HEADS UP DISPLAY

OWASP ZAP RELEASES V2.8.0 WITH THE HEADS UP DISPLAY
Heads Up Display simplifies and improves vulnerability testing for developers

London, England, 20 June 2019. OWASP™ ZAP (Open Web Application Security Project™  Zed Attack Proxy) has released a new version of its leading ZAP Project which now includes an innovative Heads Up Display (HUD) bringing security information and functionality right into the browser. Now software developers can interactively test the reliability and security of their applications in real time while controlling a wide variety of features designed to test the quality of their software.

ZAP is a free, easy to use integrated penetration testing tool. With the addition of the Heads Up Display, ZAP can be used by security professionals and developers of all skill levels to quickly and more easily find security vulnerabilities in their applications. Given the unique and integrated design of the Heads Up Display, developers and functional testers who might be new to security testing will find ZAP an indispensable tool to build secure software.

The latest version of ZAP can be downloaded from https://www.owasp.org/index.php/ZAP  The full release notes are available at https://github.com/zaproxy/zap-core-help/wiki/HelpReleases2_8_0.

In addition to being the most popular free and open source security tools available, ZAP is also one of the most active with hundreds of volunteers around the globe continually improving and enhancing its features. ZAP provides automated scanners as well as a set of tools that allows new users and security professionals to manually identify security vulnerabilities. ZAP has also been translated into over 25 languages including French, Italian, Dutch, Turkish and Chinese. 

Simon Bennetts, OWASP ZAP Project Leader commented: “This is a really important release for the project team and developers who want to build great and secure applications. The HUD is a completely new interface for ZAP and one that is unique in the industry. It shows that open source projects continue to create high-quality, new and exciting tools that deliver real value to the market - and at no cost to users.” 

“ZAP is the Foundation’s most popular software tool,” said Mike McCamon interim executive director of the OWASP Foundation. McCamon continued, “For nearly two decades OWASP continues to be a great destination for innovators to host, develop, and release software that will secure the web. Simon and the entire ZAP community deserves great recognition for their continued devotion to open source excellence.”

For further information please contact:
Simon Bennetts, OWASP ZAP Project Leader: simon.bennetts@owasp.org  or Mike McCamon, Interim Executive Director, mike.mccamon@owasp.com

Labels: , , , ,

Thursday, February 16, 2017

OWASP Comprises 30% of ToolsWatch.org Top Ten Security Tools for 2016

The OWASP Community produces a lot of amazing things. This month we are glad to share that three OWASP Projects have taken spots in 2016 Top Security Tools as voted by ToolsWatch.org Readers. Congratulations and many thanks to the project leaders and many contributors to these projects! 


Zed Attack Proxy


OWASP Zed Attack Proxy Project (ZAP), a penetration testing tool that combines automatic scanning and manual tools, was voted the 2nd most popular tool of 2016.  You can join Simon Bennetts and the ZAP team by visiting the ZAP GitHub or taking this survey.





OWASP VBScan Project, the black box vulnerability scanner which detects and analyses VBulletin CMS vulnerabilities in perl, was voted 3rd most popular tool of 2016.  You watch demonstrations on the wiki page or help by following up with Mohammad Reza Espargham on GitHub.





OWASP ZSC Tool Project placed 6th in the top ten for 2016.  The project generates customized shellcodes and convert scripts to an obfuscated script. You can contribute Ali Razmjoo and Johanna Curiel's python project on their GitHub.


Thank you for your votes!!
Congratulations OWASP Project Leaders!


.

Labels: , , , , , , , ,