To get the most out of this book
To get the most out of Zed Attack Proxy Cookbook, you should keep informed and use the community resources. OWASP ZAP is an open source tool that is constantly being updated and improved, so it’s important that you stay up to date with the latest version. Also, the OWASP community is very active, and there are a lot of resources available that can help you get the most out of the tool.
Software/hardware covered in the book |
Operating system requirements |
Java |
Windows, macOS, or Linux |
Docker Desktop/Docker Compose |
Windows, macOS, or Linux |
OWASP Juice-Shop |
Windows, macOS, Linux, or Docker |
Mutillidae II |
Windows, macOS, or Linux |
Jenkins |
Windows, macOS, Linux, or Docker |
If you are using the digital version of this book, we advise you to type the code yourself or access the code from the book’s GitHub repository (a link is available in the next section). Doing so will help you avoid any potential errors related to the copying and pasting of code.
In addition, with ZAP, practice makes perfect. ZAP is a tool designed to help organizations identify and fix vulnerabilities in their web applications, and in the world of the web, the various methods and combinations that developers use to design, build, and implement is infinite. Practicing and seeing how web applications are put together will only make you a stronger web application penetration tester with ZAP.