YoVDO

OWASP ZAP For Pentesting And Bug Bounties From Scratch FREE

Offered By: Udemy

Tags

Ethical Hacking Courses Penetration Testing Courses Bug Bounty Courses Application Security Courses Man in The Middle Attacks Courses Vulnerability Scanning Courses OWASP ZAP Courses

Course Description

Overview

The Best Free Learning Resource For OWASP ZAP out there

What you'll learn:
  • Anyone who has used burp suite pro but wants a free alternative
  • If you've never used a MiTM proxy
  • If you want to intercept traffic from your browser to the server
  • If you want to automatically scan your application for vulnerabilities

WhatIsThis?

OWASPZed Attack Proxy AKAZAPis a great tool for pen-testers and bug bounty hunters alike. Everyone needs a MitMproxy if they are investigating application traffic and while there are many to pick from, ZAPhas distinct advantages over all of them.

Compared to burp suite pro, OWASPZAP includes the same features but is free.

Compared to Charles proxy, ZAPincludes more interactivity.

ZAPhas context-dependent UI screens, meaning they only show you what is relevant at that time to avoid screen clutter.

ZAPworks with a server/database system, allowing you to easily make and restore snapshots.

We can keep on going on forever about it's clear this is an essential tool for any hacker who takes themselves even the least bit serious. While it may be a bit harder to learn since everyone is used to burp suite, this tutorial aims to guide you through the basics in video format. You can follow along with the instructor and even perform the automated scans on labs that are created by the author.

WhoAmI?

My name is Wesley Thijs and I've been an instructor for about 3 years now. Before this, I was a QAengineer and since recently also a full-time pentester in my own company. I love seeing people floorish and rise up to the challenges that face us as hackers. Of course, we all know information is free on the internet anywhere we look but it's also this overwhelming feeling of information that led me to start creating courses that follow an easy to follow along guide with labs you can try all this hacking violence on.


Taught by

Wesley Thijs

Related Courses

Web Hacker's Toolbox - Tools Used by Successful Hackers
Packt via Coursera
Ethical Hacking 101: Web App Penetration Testing - a full course for beginners
freeCodeCamp
Dynamic Application Security Testing (DAST)
LinkedIn Learning
Automate Web Application Scans with OWASP ZAP and Python
Pluralsight
Implementing and Managing OWASP ZAP for DevSecOps
Pluralsight