Multi-step scanning in ZAP - Handling sequences in OWASP ZAP |
|
Abstract | This report presents a solution for scanning sequences of HTTP requests in the open source penetration testing tool, Zed Attack Proxy or ZAP. The report documents the analysis, design and implementation phases of the project, as well as explain how the different test scenarios were set up and used for verification of the functionality developed in this project. The proposed solution will serve as a proof-of-concept, before being integrated with the publically available version of the application. |
Type | Master's thesis [Industrial collaboration] |
Year | 2014 |
Publisher | Technical University of Denmark, Department of Applied Mathematics and Computer Science |
Address | Richard Petersens Plads, Building 324, DK-2800 Kgs. Lyngby, Denmark, compute@compute.dtu.dk |
Series | DTU Compute M.Sc.-2014 |
Note | Supervised by Associate Professor Christian W. Probst, cwpr@dtu.dk, DTU Compute |
Electronic version(s) | [pdf] |
Publication link | http://www.compute.dtu.dk/English.aspx |
BibTeX data | [bibtex] |
IMM Group(s) | Computer Science & Engineering |