Hi Sonal, the explanation which you have given is very neat and clear. Thanks a million for this. And how to we mitigate the vulnerabilities identified? Awaiting your response on this. Thanks again! Loads of love
Hi Sonal, this is a very well explained video about OWASP ZAP. I am stuck at one place and require your help. On my firefox browser, Im not able to import 'Zap_root' certificate file. How can I get it first in my downloads. I am using Mac-Intel. Thanks in advance.
- In Zap, Go to Tools->Network->Server Certificates. -Click on the Import or Save button. -Give the file name and select the location where you want to save it in the popup opened. Click on Save -This will save the certificate on your Mac in the selected location. -Go to Firefox settings. Search certificates. -Click on "View Certificates" button - Click on Import button -Go to the location where you saved your certificate earlier. Select and open it -Click on Ok You can also restart Firefox to ensure changes take effect
-Right click on the request in History tab-> Select "Include in context"-> Select context (Default context or any other context as per your requirements) - Ensure your URL is added as a regex -Right click on Context-> Click on Spider to run passive scan -Now it will only scan the URLs included in context for security vulnerabilities Make sure to check the context results in the Sites tab after scanning. Expand it to see if any URLs have been added. Sometimes, simply restarting ZAP can resolve temporary issues.
Excellent explanation 😊
Thank you! It was incredibly helpful in developing the proof of concept.
Thank you for explaining!
Good explanation for beginners please do more videos
Hi Sonal, the explanation which you have given is very neat and clear. Thanks a million for this. And how to we mitigate the vulnerabilities identified? Awaiting your response on this. Thanks again! Loads of love
I will work on creating a video on this topic. Thank you!
thank u so much
Thanks❤❤
good explanation do you have linkdin account?
💯💯
Hi Sonal, this is a very well explained video about OWASP ZAP. I am stuck at one place and require your help. On my firefox browser, Im not able to import 'Zap_root' certificate file. How can I get it first in my downloads. I am using Mac-Intel. Thanks in advance.
- In Zap, Go to Tools->Network->Server Certificates.
-Click on the Import or Save button.
-Give the file name and select the location where you want to save it in the popup opened. Click on Save
-This will save the certificate on your Mac in the selected location.
-Go to Firefox settings. Search certificates.
-Click on "View Certificates" button
- Click on Import button
-Go to the location where you saved your certificate earlier. Select and open it
-Click on Ok
You can also restart Firefox to ensure changes take effect
What is the difference between zap browser vs own browser
In terms working, results and output there is no different, but in terms setup up and configaration inbuilt zap browser is much beginner friendly
How can I verify my number on zap exchange
I set the context in URL but doesn't receive in the new context ?? Mam plz give some explanation??
-Right click on the request in History tab-> Select "Include in context"-> Select context (Default context or any other context as per your requirements)
- Ensure your URL is added as a regex
-Right click on Context-> Click on Spider to run passive scan
-Now it will only scan the URLs included in context for security vulnerabilities
Make sure to check the context results in the Sites tab after scanning. Expand it to see if any URLs have been added. Sometimes, simply restarting ZAP can resolve temporary issues.