-
-
Notifications
You must be signed in to change notification settings - Fork 136
HelpAddonsQuickstartQuickstart
The Quick Start tab provides you with an easy way to quickly test a web application.
Enter the URL of your target application and press the 'Attack' button.
ZAP will spider the target and then attack it with the active scanner.
For a more in depth test you should explore your application using your browser or automated regression tests while proxying through ZAP.
As long as you have the Selenium add-on installed then you will see an option to launch browsers. Select the browser you want from the pull-down and press the 'Launch Browser' button. Browsers launched this way will be configured to proxy via ZAP and will ignore certificate errors, so you will not need to import the ZAP Root CA Certificate. ZAP will remember the last browser you chose when you restart it.
A button will also be added to the toolbar which will launch the latest browser chosen. The icon will change to represent the relevant browser
Note that launched browsers will stop working if you change the address or port that ZAP is listening on.
If you have the Plug-n-Hack add-on installed then you will see a button for configuring Firefox with Plug-n-Hack. This automatically configures Firefox to proxy via ZAP and will import and trust the ZAP Root CA.
Command Line | description of command line arguments | |
Launch Options | the Quick Start Launch Options |
-
ZAP User Guide
- Introduction
-
Getting Started
- Configuring proxies
-
Features
- Active Scan
- Add-ons
- Alerts
- Anti CSRF Tokens
- API
- Authentication
- Break Points
- Callbacks
- Contexts
- Data Driven Content
- Filters
- Globally Excluded URLs
- HTTP Sessions
- Man-in-the-middle Proxy
- Modes
- Notes
- Passive Scan
- Scan Policies
- Scope
- Session Management
- Spider
- Statistics
- Structural Modifiers
- Structural Parameters
- Tags
- Users
- Scanner Rules
- A Simple Penetration Test
-
The User Interface
- Overview
- The Top Level Menu
- The Top Level Toolbar
- The Tabs
-
The Dialogs
- Active Scan
- Add Alert
- Add Break Point
- Add Note
- Encode/Decode/Hash
- Filter
- Find
- History Filter
- Manual Request Editor
- Manage Add-ons
- Manage Tags
-
Options
- Active Scan
- Active Scan Input Vectors
- Alerts
- Anti CSRF Tokens
- API
- Breakpoints
- Callback Address
- Certificate
- Check for Updates
- Connection
- Database
- Display
- Dynamic SSL Certificates
- Extensions
- Global Exclude URL
- HTTP Sessions
- JVM
- Keyboard
- Language
- Local Proxies
- Passive Scan Rules
- Passive Scan Tags
- Passive Scanner
- Rule Configuration
- Scripts
- Search
- Spider
- Statistics
- Persist Session
- Resend
- Scan Policy Manager
- Scan Progress
- Session
- Spider
- The Footer
- Command Line
- Add Ons
- Releases
- Paros Proxy
- Credits