Security zap and selenium

Post on 12-Jun-2015

3.408 views 0 download

Transcript of Security zap and selenium

  • 1. ZAP Selenium @kirlionik

2. am.ru IT . ( )Site: http://qaengineer.ruE-mail: shapin.anton@gmail.com 3. " " 4. ZAP ZAP Selenium Web Driver 5. security ! 6. ! 7. Zed Attack Proxy (ZAP) pentestweb- c , 8. ZAP Intercepting Proxy Automated scanner Passive scanner Brute Force scanner Spider 9. ZAP Fuzzer Smartcard and Client Digital Certificatessupport Port scanner Dynamic SSL certificates API Beanshell integration 10. ZAP Web browser QA Expert ZAPWeb Application 11. 12. Selenium? Security Regress Tests "" continuous integration , 13. Build Tool + Selenium + ZAP = Profit!Web browserBuild tool Web DriverWebZAP Application 14. Build Tool + Selenium + ZAP 15. ( !) 16. , - 17. ZAP , ZAP Java, ( ) 18. ZAPhttps://www.owasp.org/index.php/ZAP Downloads, wiki, source codehttp://code.google.com/p/zaproxy/downloads/list ZAP announcements@zaproxy 19. !