<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Axel+Neumann</id>
		<title>OWASP - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Axel+Neumann"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php/Special:Contributions/Axel_Neumann"/>
		<updated>2026-05-27T15:36:29Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/Current&amp;diff=127568</id>
		<title>Projects/OWASP Zed Attack Proxy Project/Releases/Current</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/Current&amp;diff=127568"/>
				<updated>2012-04-08T13:19:30Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: Redirected page to Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.4.0&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;#REDIRECT [[Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.4.0]]&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=127567</id>
		<title>Projects/OWASP Zed Attack Proxy Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=127567"/>
				<updated>2012-04-08T13:16:53Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Project About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
| project_name = OWASP Zed Attack Proxy Project&lt;br /&gt;
&lt;br /&gt;
| project_home_page = OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
&lt;br /&gt;
| project_description = &lt;br /&gt;
This project, OWASP Zed Attack Proxy Project (ZAP), provides an easy to use integrated penetration testing tool for testing web applications.&lt;br /&gt;
&lt;br /&gt;
It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who a new to penetration testing.&lt;br /&gt;
&lt;br /&gt;
ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually. &lt;br /&gt;
&lt;br /&gt;
| project_license = [http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0]&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Psiinon&lt;br /&gt;
| leader_email1 = psiinon@gmail.com&lt;br /&gt;
| leader_username1 = Psiinon&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Axel Neumann&lt;br /&gt;
| leader_email2 = a.c.neumann@gmail.com&lt;br /&gt;
| leader_username2 = Axel_Neumann&lt;br /&gt;
&lt;br /&gt;
| contributor_name[1-10] = &lt;br /&gt;
| contributor_email[1-10] = &lt;br /&gt;
| contributor_username[1-10] = &lt;br /&gt;
&lt;br /&gt;
| pamphlet_link = http://www.owasp.org/images/e/e3/OWASP_ZAP_Flyer.pdf&lt;br /&gt;
&lt;br /&gt;
| presentation_link = http://www.owasp.org/images/c/c8/Conference_Style_slides_for_ZAP.ppt&lt;br /&gt;
&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp-zed-attack-proxy&lt;br /&gt;
&lt;br /&gt;
| project_road_map = http://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project/Roadmap&lt;br /&gt;
&lt;br /&gt;
| links_url1 = http://code.google.com/p/zaproxy/&lt;br /&gt;
| links_name1 = ZAP's Google Code page&lt;br /&gt;
&lt;br /&gt;
| links_url2 = http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
| links_name2 = Downloads&lt;br /&gt;
&lt;br /&gt;
| links_url3 = http://code.google.com/p/zaproxy/issues/list&lt;br /&gt;
| links_name3 = Issues&lt;br /&gt;
&lt;br /&gt;
| links_url4 = http://code.google.com/p/zaproxy/wiki/HelpIntro&lt;br /&gt;
| links_name4 = User Guide&lt;br /&gt;
&lt;br /&gt;
| links_url5 = http://freshmeat.net/projects/zed-attack-proxy-zap&lt;br /&gt;
| links_name5 = Freshmeat page&lt;br /&gt;
&lt;br /&gt;
| links_url6 = http://groups.google.com/group/zaproxy-develop&lt;br /&gt;
| links_name6 = Developer Group&lt;br /&gt;
&lt;br /&gt;
| links_url7 = http://pentest4devs.blogspot.com/ &lt;br /&gt;
| links_name7 = Penetration Testing for Developers Blog &lt;br /&gt;
&lt;br /&gt;
| links_url8 = https://www.owasp.org/index.php/GPC_Project_Assessment/OWASP_Zed_Attack_Proxy_Project/ZAP_1.3.0&lt;br /&gt;
| links_name8 = Releases ZAP 1.3.0 / Assessment Process Control &lt;br /&gt;
&lt;br /&gt;
| release_1 = ZAP 1.0.0&lt;br /&gt;
&lt;br /&gt;
| release_2 = ZAP 1.1.0&lt;br /&gt;
&lt;br /&gt;
| release_3 = ZAP 1.2.0&lt;br /&gt;
&lt;br /&gt;
| release_4 = ZAP 1.3.0&lt;br /&gt;
&lt;br /&gt;
| release_5 = ZAP 1.3.1&lt;br /&gt;
&lt;br /&gt;
| release_6 = ZAP 1.3.2&lt;br /&gt;
&lt;br /&gt;
| release_7 = ZAP 1.3.3&lt;br /&gt;
&lt;br /&gt;
| release_8 = ZAP 1.3.4&lt;br /&gt;
&lt;br /&gt;
| release_9 = ZAP 1.4.0&lt;br /&gt;
&lt;br /&gt;
| release_10 = &lt;br /&gt;
&lt;br /&gt;
| project_about_page = Projects/OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.4.0&amp;diff=127566</id>
		<title>Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.4.0</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.4.0&amp;diff=127566"/>
				<updated>2012-04-08T13:14:16Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: Created page with &amp;quot;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt; | project_name = OWASP Zed Attack Proxy Project | project_home_page = OWASP Zed Attack Proxy...&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
| project_name = OWASP Zed Attack Proxy Project&lt;br /&gt;
| project_home_page = OWASP Zed Attack Proxy Project&lt;br /&gt;
| release_name = ZAP 1.4.0&lt;br /&gt;
| release_date = 08/04/2012&lt;br /&gt;
&lt;br /&gt;
| release_description = &lt;br /&gt;
&lt;br /&gt;
'''This release includes the following significant changes:'''&lt;br /&gt;
&lt;br /&gt;
* Plugable extensions: Full extensions can now be plugged into ZAP dynamically with full access to all of ZAPs features.&lt;br /&gt;
* Syntax highlighting in the Response Panel: The HTML panels now support switchable syntax highlighting.&lt;br /&gt;
* fuzzdb integration: The fuzzer now includes fuzzdb (http://code.google.com/p/fuzzdb/) fuzzing files.&lt;br /&gt;
* Parameter analysis: A new Params tab shows a summary of all of the parameters a site has used.&lt;br /&gt;
* Enhanced XSS scanner: The Cross Site Scripting active scanner has been rewritten from scratch to find more potential XSS issues and report fewer false positives.&lt;br /&gt;
* Watcher passive checks ported to ZAP: Different checks have been ported from Watcher to ZAP (thanks to Chris Weber for permission).&lt;br /&gt;
* Tons of bug-fixes and minor improvements.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
| release_license = [http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0]&lt;br /&gt;
| release_download_link = http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Psiinon&lt;br /&gt;
| leader_email1 = psiinon@gmail.com&lt;br /&gt;
| leader_username1 = Psiinon&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Axel Neumann&lt;br /&gt;
| leader_email2 = a.c.neumann@gmail.com&lt;br /&gt;
| leader_username2 = Axel Neumann&lt;br /&gt;
&lt;br /&gt;
| release_notes = http://code.google.com/p/zaproxy/wiki/HelpReleases1_4_0&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Zed_Attack_Proxy_Project&amp;diff=127565</id>
		<title>OWASP Zed Attack Proxy Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Zed_Attack_Proxy_Project&amp;diff=127565"/>
				<updated>2012-04-08T13:05:39Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Builders}}&lt;br /&gt;
{{OWASP Breakers}}&lt;br /&gt;
= Main =&lt;br /&gt;
{{Social Media Links}}&lt;br /&gt;
[[Image:ZAP-ScreenShotAddAlert.png|thumb|300px|right|ZAP Add Alert Screen Shot]]&lt;br /&gt;
[[Image:ZAP-ScreenShotHelp.png|thumb|300px|right|ZAP Help Screen Shot]]&lt;br /&gt;
[[Image:ZAP-ScreenShotHistoryFilter.png|thumb|300px|right|ZAP History Filter Screen Shot]]&lt;br /&gt;
[[Image:ZAP-ScreenShotSearchTab.png|thumb|300px|right|ZAP Search Tab Screen Shot]]&lt;br /&gt;
&lt;br /&gt;
The Zed Attack Proxy (ZAP) is an easy to use integrated penetration testing tool for finding vulnerabilities in web applications. &lt;br /&gt;
&lt;br /&gt;
It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who are new to penetration testing. &lt;br /&gt;
&lt;br /&gt;
ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually.&lt;br /&gt;
&lt;br /&gt;
===OWASP ZAP is also the [http://holisticinfosec.blogspot.com/2012/02/2011-toolsmith-tool-of-year-owasp-zap.html Toolsmith Tool of the Year for 2011!]===&lt;br /&gt;
&lt;br /&gt;
'''Are you a student? Would you like to get paid to work on ZAP or other OWASP projects over the summer?'''&lt;br /&gt;
&lt;br /&gt;
'''OWASP is taking part in the Google Summer of Code: https://www.owasp.org/index.php/GSoC2012_Ideas and ZAP is one of the projects you can work on! '''&lt;br /&gt;
&lt;br /&gt;
[[Image:ZAP-Download.png |&lt;br /&gt;
link=http://code.google.com/p/zaproxy/downloads/list]]&lt;br /&gt;
&lt;br /&gt;
'''The current version of ZAP is [http://code.google.com/p/zaproxy/wiki/HelpReleases1_4_0 1.4.0].'''&lt;br /&gt;
&lt;br /&gt;
Want a very quick introduction? See the [http://www.owasp.org/images/e/e3/OWASP_ZAP_Flyer.pdf project pamphlet].&lt;br /&gt;
&lt;br /&gt;
For a slightly longer introduction see the [http://www.owasp.org/images/c/c8/Conference_Style_slides_for_ZAP.ppt project presentation].&lt;br /&gt;
&lt;br /&gt;
For video introductions to ZAP see the links on the [https://code.google.com/p/zaproxy/wiki/Videos wiki videos page].&lt;br /&gt;
&lt;br /&gt;
'''For more details about ZAP, including the full user guide, see the [https://code.google.com/p/zaproxy/wiki/Introduction wiki].'''&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Zed Attack Proxy&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Some of ZAP's features:'''&lt;br /&gt;
&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsIntercept Intercepting Proxy]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsAscan Automated scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsPscan Passive scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsBruteforce Brute Force scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsSpider Spider]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsFuzz Fuzzer]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsPortscan Port scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpUiDialogsOptionsDynsslcert Dynamic SSL certificates]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsApi API]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpUiDialogsBeanshell Beanshell integration]&lt;br /&gt;
&lt;br /&gt;
'''Some of ZAP's characteristics:'''&lt;br /&gt;
&lt;br /&gt;
* Easy to install (just requires java 1.6)&lt;br /&gt;
* Ease of use a priority&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpIntro Comprehensive help pages]&lt;br /&gt;
* Fully internationalized&lt;br /&gt;
* Under active development&lt;br /&gt;
* [http://www.apache.org/licenses/LICENSE-2.0 Open source]&lt;br /&gt;
* Free (no paid for 'Pro' version)&lt;br /&gt;
* Cross platform&lt;br /&gt;
* Involvement actively encouraged &lt;br /&gt;
&lt;br /&gt;
'''It supports the following languages:'''&lt;br /&gt;
&lt;br /&gt;
* English&lt;br /&gt;
* Brazilian Portuguese&lt;br /&gt;
* Chinese&lt;br /&gt;
* Danish&lt;br /&gt;
* French&lt;br /&gt;
* German&lt;br /&gt;
* Greek&lt;br /&gt;
* Indonesian&lt;br /&gt;
* Japanese&lt;br /&gt;
* Persian&lt;br /&gt;
* Polish&lt;br /&gt;
* Spanish &lt;br /&gt;
&lt;br /&gt;
ZAP is a fork of the well regarded [http://www.parosproxy.org/ Paros Proxy].&lt;br /&gt;
&lt;br /&gt;
= Roadmap =&lt;br /&gt;
&lt;br /&gt;
Details of previous releases can be found [http://code.google.com/p/zaproxy/wiki/HelpReleasesReleases here]&lt;br /&gt;
&lt;br /&gt;
==Release 1.4.0==&lt;br /&gt;
Version [http://code.google.com/p/zaproxy/wiki/HelpReleases1_4_0 1_4_0] has just been released.&lt;br /&gt;
&lt;br /&gt;
Compared to previous releases, the 1.4.0 release adds the following main features:&lt;br /&gt;
* Support for ZAP-Extensions (Plugable extensions)&lt;br /&gt;
* Syntax highlighting in the Response Panel&lt;br /&gt;
* fuzzdb integration&lt;br /&gt;
* Parameter analysis&lt;br /&gt;
* Enhanced XSS scanner&lt;br /&gt;
* Tons of bug-fixes and minor improvements&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Future Releases==&lt;br /&gt;
&lt;br /&gt;
Future releases are likely to include:&lt;br /&gt;
* Fuzzing analysis&lt;br /&gt;
* API extensions&lt;br /&gt;
* Enhancements and fixes logged on the [https://code.google.com/p/zaproxy/issues/list issues page]&lt;br /&gt;
&lt;br /&gt;
= Get Involved =&lt;br /&gt;
&lt;br /&gt;
Involvement in the development of ZAP is actively encouraged!&lt;br /&gt;
&lt;br /&gt;
You do not have to be a security expert in order to contribute.&lt;br /&gt;
&lt;br /&gt;
Some of the ways you can help:&lt;br /&gt;
&lt;br /&gt;
==Feature Requests==&lt;br /&gt;
&lt;br /&gt;
Please raise new feature requests as enhancement requests here: http://code.google.com/p/zaproxy/issues/list&lt;br /&gt;
&lt;br /&gt;
If there are existing requests you are also interested in then please 'star' them - that way we can see which features people are most interested in and can prioritize them accordingly. &lt;br /&gt;
&lt;br /&gt;
==Feedback==&lt;br /&gt;
&lt;br /&gt;
Please use the [http://groups.google.com/group/zaproxy-develop zaproxy-develop Google Group] for feedback:&lt;br /&gt;
* What do like?&lt;br /&gt;
* What don't you like?&lt;br /&gt;
* What features could be made easier to use?&lt;br /&gt;
* How could the help pages be improved? &lt;br /&gt;
&lt;br /&gt;
==Log issues==&lt;br /&gt;
&lt;br /&gt;
Have you had a problem using ZAP?&lt;br /&gt;
&lt;br /&gt;
If so and its not already been logged then please [http://code.google.com/p/zaproxy/issues/list report it]&lt;br /&gt;
&lt;br /&gt;
==Localization==&lt;br /&gt;
&lt;br /&gt;
Are you fluent in another language? Can you help translate ZAP into that language?&lt;br /&gt;
&lt;br /&gt;
If so then please get in touch.&lt;br /&gt;
&lt;br /&gt;
==Development==&lt;br /&gt;
&lt;br /&gt;
If you fancy having a go at adding functionality to ZAP then please get in touch via the [http://groups.google.com/group/zaproxy-develop zaproxy-develop Google Group].&lt;br /&gt;
&lt;br /&gt;
Again, you do not have to be a security expert to contribute code - working on ZAP could be great way to learn more about web application security!&lt;br /&gt;
&lt;br /&gt;
If you actively contribute to ZAP then you will be invited to join the project. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!---- = Project About = &lt;br /&gt;
{{:GPC_Project_Details/OWASP_ZAP | OWASP Project Identification Tab}} ---&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Project About =&lt;br /&gt;
{{:Projects/OWASP Zed Attack Proxy Project | Project About}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_Project|Zed Attack Proxy Project]] [[Category:OWASP_Tool]] [[Category:OWASP_Release_Quality_Tool|OWASP Release Quality Tool]] [[Category:OWASP_Download]]&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.2&amp;diff=116056</id>
		<title>Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.2</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.2&amp;diff=116056"/>
				<updated>2011-08-21T10:27:16Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
| project_name = OWASP Zed Attack Proxy Project&lt;br /&gt;
| project_home_page = OWASP Zed Attack Proxy Project&lt;br /&gt;
| release_name = ZAP 1.3.2&lt;br /&gt;
| release_date = 08/21/2011&lt;br /&gt;
&lt;br /&gt;
| release_description = &lt;br /&gt;
&lt;br /&gt;
'''This release is a bugfix release without any new features. Compared to older releases, the 1.3.x branch includes the following significant changes:'''&lt;br /&gt;
&lt;br /&gt;
* Fuzzing: Strings in a response can now be fuzzed to try to find vulnerabilities. Anti CRSF tokens can be detected and automatically regenerated when fuzzing. This functionality is based on code from the OWASP JBroFuzz project.&lt;br /&gt;
* Dynamic SSL certificates: The support for SSL connections was improved and simplified. User's can now create their own root certificate and distribute this into their HTTP clients.&lt;br /&gt;
* Daemon mode: Starting ZAP with the &amp;quot;-daemon&amp;quot; command line option will cause it to run in the background in 'headless' mode, meaning that no UI is displayed.&lt;br /&gt;
* API: An initial API has been implemented in XML, JSON and HTML.&lt;br /&gt;
* Beanshell integration: The BeanShell is an interactive Java shell that can be used to execute BeanShell scripts. BeanShell integration in OWASP ZAP enables you to write scripts using the ZAP functions and data set.&lt;br /&gt;
* Full internationalisation: All displayed strings are now fully internationalised.&lt;br /&gt;
* Localisation: Out of the box support for the following languages: English, Brazilian Portuguese, Chinese, French, German, Greek, Indonesian, Japanese, Polish, Spanish&lt;br /&gt;
&lt;br /&gt;
| release_license = [http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0]&lt;br /&gt;
| release_download_link = http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Psiinon&lt;br /&gt;
| leader_email1 = psiinon@gmail.com&lt;br /&gt;
| leader_username1 = Psiinon&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Axel Neumann&lt;br /&gt;
| leader_email2 = a.c.neumann@gmail.com&lt;br /&gt;
| leader_username2 = Axel Neumann&lt;br /&gt;
&lt;br /&gt;
| release_notes = http://code.google.com/p/zaproxy/wiki/HelpReleases1_3_2&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.2&amp;diff=116055</id>
		<title>Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.2</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.2&amp;diff=116055"/>
				<updated>2011-08-21T10:26:05Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
| project_name = OWASP Zed Attack Proxy Project&lt;br /&gt;
| project_home_page = OWASP Zed Attack Proxy Project&lt;br /&gt;
| release_name = ZAP 1.3.2&lt;br /&gt;
| release_date = 08/21/2011&lt;br /&gt;
&lt;br /&gt;
| release_description = &lt;br /&gt;
&lt;br /&gt;
'''This release is a bugfix release without any new features. Compared to older releases, the 1.3.x branch includes the following significant changes:'''&lt;br /&gt;
&lt;br /&gt;
* Fuzzing: Strings in a response can now be fuzzed to try to find vulnerabilities. Anti CRSF tokens can be detected and automatically regenerated when fuzzing. This functionality is based on code from the OWASP JBroFuzz project.&lt;br /&gt;
* Dynamic SSL certificates: The support for SSL connections was improved and simplified. User's can now create their own root certificate and distribute this into their HTTP clients.&lt;br /&gt;
* Daemon mode: Starting ZAP with the &amp;quot;-daemon&amp;quot; command line option will cause it to run in the background in 'headless' mode, meaning that no UI is displayed.&lt;br /&gt;
* API: An initial API has been implemented in XML, JSON and HTML.&lt;br /&gt;
* Beanshell integration: The BeanShell is an interactive Java shell that can be used to execute BeanShell scripts. BeanShell integration in OWASP ZAP enables you to write scripts using the ZAP functions and data set.&lt;br /&gt;
* Full internationalisation: All displayed strings are now fully internationalised.&lt;br /&gt;
* Localisation: Out of the box support for the following languages: English, Brazilian Portuguese, Chinese, French, German, Greek, Indonesian, Japanese, Polish, Spanish&lt;br /&gt;
&lt;br /&gt;
| release_license = [http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0]&lt;br /&gt;
| release_download_link = http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Psiinon&lt;br /&gt;
| leader_email1 = psiinon@gmail.com&lt;br /&gt;
| leader_username1 = Psiinon&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Axel Neumann&lt;br /&gt;
| leader_email2 = a.c.neumann@gmail.com&lt;br /&gt;
| leader_username2 = Axel Neumann&lt;br /&gt;
&lt;br /&gt;
| release_notes = http://www.owasp.org/index.php/Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.1/Notes&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=116054</id>
		<title>Projects/OWASP Zed Attack Proxy Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=116054"/>
				<updated>2011-08-21T10:23:33Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Project About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
| project_name = OWASP Zed Attack Proxy Project&lt;br /&gt;
&lt;br /&gt;
| project_home_page = OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
&lt;br /&gt;
| project_description = &lt;br /&gt;
This project, OWASP Zed Attack Proxy Project (ZAP), provides an easy to use integrated penetration testing tool for testing web applications.&lt;br /&gt;
&lt;br /&gt;
It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who a new to penetration testing.&lt;br /&gt;
&lt;br /&gt;
ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually. &lt;br /&gt;
&lt;br /&gt;
| project_license = [http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0]&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Psiinon&lt;br /&gt;
| leader_email1 = psiinon@gmail.com&lt;br /&gt;
| leader_username1 = Psiinon&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Axel Neumann&lt;br /&gt;
| leader_email2 = a.c.neumann@gmail.com&lt;br /&gt;
| leader_username2 = Axel_Neumann&lt;br /&gt;
&lt;br /&gt;
| contributor_name[1-10] = &lt;br /&gt;
| contributor_email[1-10] = &lt;br /&gt;
| contributor_username[1-10] = &lt;br /&gt;
&lt;br /&gt;
| pamphlet_link = http://www.owasp.org/images/e/e3/OWASP_ZAP_Flyer.pdf&lt;br /&gt;
&lt;br /&gt;
| presentation_link = http://www.owasp.org/images/c/c8/Conference_Style_slides_for_ZAP.ppt&lt;br /&gt;
&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp-zed-attack-proxy&lt;br /&gt;
&lt;br /&gt;
| project_road_map = http://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project/Roadmap&lt;br /&gt;
&lt;br /&gt;
| links_url1 = http://code.google.com/p/zaproxy/&lt;br /&gt;
| links_name1 = ZAP's Google Code page&lt;br /&gt;
&lt;br /&gt;
| links_url2 = http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
| links_name2 = Downloads&lt;br /&gt;
&lt;br /&gt;
| links_url3 = http://code.google.com/p/zaproxy/issues/list&lt;br /&gt;
| links_name3 = Issues&lt;br /&gt;
&lt;br /&gt;
| links_url4 = http://code.google.com/p/zaproxy/wiki/HelpIntro&lt;br /&gt;
| links_name4 = User Guide&lt;br /&gt;
&lt;br /&gt;
| links_url5 = http://freshmeat.net/projects/zed-attack-proxy-zap&lt;br /&gt;
| links_name5 = Freshmeat page&lt;br /&gt;
&lt;br /&gt;
| links_url6 = http://groups.google.com/group/zaproxy-develop&lt;br /&gt;
| links_name6 = Developer Group&lt;br /&gt;
&lt;br /&gt;
| links_url7 = http://pentest4devs.blogspot.com/ &lt;br /&gt;
| links_name7 = Penetration Testing for Developers Blog &lt;br /&gt;
&lt;br /&gt;
| links_url8 = https://www.owasp.org/index.php/Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.0/Assessment&lt;br /&gt;
| links_name8 =  Projects / OWASP Zed Attack Proxy Project / Releases / ZAP 1.3.0 / Assessment&lt;br /&gt;
&lt;br /&gt;
| release_1 = ZAP 1.0.0&lt;br /&gt;
&lt;br /&gt;
| release_2 = ZAP 1.1.0&lt;br /&gt;
&lt;br /&gt;
| release_3 = ZAP 1.2.0&lt;br /&gt;
&lt;br /&gt;
| release_4 = ZAP 1.3.0&lt;br /&gt;
&lt;br /&gt;
| release_5 = ZAP 1.3.1&lt;br /&gt;
&lt;br /&gt;
| release_6 = ZAP 1.3.2&lt;br /&gt;
&lt;br /&gt;
| release_7 = &lt;br /&gt;
&lt;br /&gt;
| project_about_page = Projects/OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/Current&amp;diff=116053</id>
		<title>Projects/OWASP Zed Attack Proxy Project/Releases/Current</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/Current&amp;diff=116053"/>
				<updated>2011-08-21T10:21:35Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: Redirected page to Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.2&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;#REDIRECT [[Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.2]]&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/GPC/Assessment/ZAP_1.3.2&amp;diff=116052</id>
		<title>Projects/OWASP Zed Attack Proxy Project/GPC/Assessment/ZAP 1.3.2</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/GPC/Assessment/ZAP_1.3.2&amp;diff=116052"/>
				<updated>2011-08-21T10:20:30Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: Created page with &amp;quot;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release Rating&amp;lt;/noinclude&amp;gt; | rating = -1 | criteria_version= 2 | project_name= OWASP Zed Attack Proxy Project | release_na...&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release Rating&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
| rating = -1&lt;br /&gt;
| criteria_version= 2&lt;br /&gt;
| project_name= OWASP Zed Attack Proxy Project&lt;br /&gt;
| release_name= ZAP 1.3.2&lt;br /&gt;
}}&lt;br /&gt;
&amp;lt;noinclude&amp;gt;[[Category: Release Assessment]]&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.2&amp;diff=116051</id>
		<title>Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.2</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.2&amp;diff=116051"/>
				<updated>2011-08-21T10:18:21Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: Created page with &amp;quot;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt; | project_name = OWASP Zed Attack Proxy Project | project_home_page = OWASP Zed Attack Proxy Pr...&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
| project_name = OWASP Zed Attack Proxy Project&lt;br /&gt;
| project_home_page = OWASP Zed Attack Proxy Project&lt;br /&gt;
| release_name = ZAP 1.3.2&lt;br /&gt;
| release_date = 08/21/2011&lt;br /&gt;
&lt;br /&gt;
| release_description = &lt;br /&gt;
&lt;br /&gt;
'''This release is a bugfix release without any new features. Compared to older releases, the 1.3.x branch includes the following significant changes:'''&lt;br /&gt;
&lt;br /&gt;
* Fuzzing: Strings in a response can now be fuzzed to try to find vulnerabilities. Anti CRSF tokens can be detected and automatically regenerated when fuzzing. This functionality is based on code from the OWASP JBroFuzz project.&lt;br /&gt;
* Dynamic SSL certificates: The support for SSL connections was improved and simplified. User's can now create their own root certificate and distribute this into their HTTP clients.&lt;br /&gt;
* Daemon mode: Starting ZAP with the &amp;quot;-daemon&amp;quot; command line option will cause it to run in the background in 'headless' mode, meaning that no UI is displayed.&lt;br /&gt;
* API: An initial API has been implemented in XML, JSON and HTML.&lt;br /&gt;
* Beanshell integration: The BeanShell is an interactive Java shell that can be used to execute BeanShell scripts. BeanShell integration in OWASP ZAP enables you to write scripts using the ZAP functions and data set.&lt;br /&gt;
* Full internationalisation: All displayed strings are now fully internationalised.&lt;br /&gt;
* Localisation: Out of the box support for the following languages: English, Brazilian Portuguese, Chinese, French, German, Greek, Indonesian, Japanese, Polish, Spanish&lt;br /&gt;
&lt;br /&gt;
| release_license = [http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0]&lt;br /&gt;
| release_download_link = http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Psiinon&lt;br /&gt;
| leader_email1 = psiinon@gmail.com&lt;br /&gt;
| leader_username1 = Psiinon&lt;br /&gt;
&lt;br /&gt;
| release_notes = http://www.owasp.org/index.php/Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.1/Notes&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Zed_Attack_Proxy_Project&amp;diff=116050</id>
		<title>OWASP Zed Attack Proxy Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Zed_Attack_Proxy_Project&amp;diff=116050"/>
				<updated>2011-08-21T10:15:50Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Builders}}&lt;br /&gt;
{{OWASP Breakers}}&lt;br /&gt;
==== Main  ====&lt;br /&gt;
[[Image:ZAP-ScreenShotAddAlert.png|thumb|300px|right|ZAP Add Alert Screen Shot]]&lt;br /&gt;
[[Image:ZAP-ScreenShotHelp.png|thumb|300px|right|ZAP Help Screen Shot]]&lt;br /&gt;
[[Image:ZAP-ScreenShotHistoryFilter.png|thumb|300px|right|ZAP History Filter Screen Shot]]&lt;br /&gt;
[[Image:ZAP-ScreenShotSearchTab.png|thumb|300px|right|ZAP Search Tab Screen Shot]]&lt;br /&gt;
&lt;br /&gt;
The Zed Attack Proxy (ZAP) is an easy to use integrated penetration testing tool for finding vulnerabilities in web applications. &lt;br /&gt;
&lt;br /&gt;
It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who are new to penetration testing. &lt;br /&gt;
&lt;br /&gt;
ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually.&lt;br /&gt;
&lt;br /&gt;
[[Image:ZAP-Download.png |&lt;br /&gt;
link=http://code.google.com/p/zaproxy/downloads/list]]&lt;br /&gt;
&lt;br /&gt;
'''The current version of ZAP is [http://code.google.com/p/zaproxy/wiki/HelpReleases1_3_2 1.3.2].'''&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Zed Attack Proxy&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Some of ZAP's features:'''&lt;br /&gt;
&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsIntercept Intercepting Proxy]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsAscan Automated scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsPscan Passive scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsBruteforce Brute Force scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsSpider Spider]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsFuzz Fuzzer]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsPortscan Port scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpUiDialogsOptionsDynsslcert Dynamic SSL certificates]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsApi API]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpUiDialogsBeanshell Beanshell integration]&lt;br /&gt;
&lt;br /&gt;
'''Some of ZAP's characteristics:'''&lt;br /&gt;
&lt;br /&gt;
* Easy to install (just requires java 1.6)&lt;br /&gt;
* Ease of use a priority&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpIntro Comprehensive help pages]&lt;br /&gt;
* Fully internationalized&lt;br /&gt;
* Under active development&lt;br /&gt;
* [http://www.apache.org/licenses/LICENSE-2.0 Open source]&lt;br /&gt;
* Free (no paid for 'Pro' version)&lt;br /&gt;
* Cross platform&lt;br /&gt;
* Involvement actively encouraged &lt;br /&gt;
&lt;br /&gt;
'''It supports the following languages:'''&lt;br /&gt;
&lt;br /&gt;
* English&lt;br /&gt;
* Brazilian Portuguese&lt;br /&gt;
* Chinese&lt;br /&gt;
* French&lt;br /&gt;
* Danish&lt;br /&gt;
* German&lt;br /&gt;
* Greek&lt;br /&gt;
* Indonesian&lt;br /&gt;
* Japanese&lt;br /&gt;
* Polish&lt;br /&gt;
* Spanish &lt;br /&gt;
&lt;br /&gt;
ZAP is a fork of the well regarded [http://www.parosproxy.org/ Paros Proxy].&lt;br /&gt;
&lt;br /&gt;
==== Roadmap  ====&lt;br /&gt;
&lt;br /&gt;
Details of previous releases can be found [http://code.google.com/p/zaproxy/wiki/HelpReleasesReleases here]&lt;br /&gt;
&lt;br /&gt;
==Release 1.3.2==&lt;br /&gt;
Version [http://code.google.com/p/zaproxy/wiki/HelpReleases1_3_2 1.3.2] has just been released, which is the second bugfix release of the 1.3.x branch.&lt;br /&gt;
Compared to previous releases, the 1.3.x branch adds the following main features:&lt;br /&gt;
* Fuzzing (using components from [http://www.owasp.org/index.php/Category:OWASP_JBroFuzz JBroFuzz])&lt;br /&gt;
* Dynamic SSL Certificates&lt;br /&gt;
* Daemon mode and API to allow other tools to interact with ZAP&lt;br /&gt;
* [http://www.beanshell.org/home.html BeanShell] integration&lt;br /&gt;
* Full internationalization&lt;br /&gt;
* Out of the box support for 10 languages&lt;br /&gt;
&lt;br /&gt;
==Future Releases==&lt;br /&gt;
&lt;br /&gt;
Future releases are likely to include:&lt;br /&gt;
* Further improvements to the passive and active automated scanners&lt;br /&gt;
* Further improvements the Spider&lt;br /&gt;
* Fuzzing analysis&lt;br /&gt;
* API extensions&lt;br /&gt;
&lt;br /&gt;
====Get Involved====&lt;br /&gt;
&lt;br /&gt;
Involvement in the development of ZAP is actively encouraged!&lt;br /&gt;
&lt;br /&gt;
You do not have to be a security expert in order to contribute.&lt;br /&gt;
&lt;br /&gt;
Some of the ways you can help:&lt;br /&gt;
&lt;br /&gt;
==Feature Requests==&lt;br /&gt;
&lt;br /&gt;
Please raise new feature requests as enhancement requests here: http://code.google.com/p/zaproxy/issues/list&lt;br /&gt;
&lt;br /&gt;
If there are existing requests you are also interested in then please 'star' them - that way we can see which features people are most interested in and can prioritize them accordingly. &lt;br /&gt;
&lt;br /&gt;
==Feedback==&lt;br /&gt;
&lt;br /&gt;
Please use the [http://groups.google.com/group/zaproxy-develop zaproxy-develop Google Group] for feadback:&lt;br /&gt;
* What do like?&lt;br /&gt;
* What dont you like?&lt;br /&gt;
* What features could be made easier to use?&lt;br /&gt;
* How could the help pages be improved? &lt;br /&gt;
&lt;br /&gt;
==Log issues==&lt;br /&gt;
&lt;br /&gt;
Have you had a problem using ZAP?&lt;br /&gt;
&lt;br /&gt;
If so and its not already been logged then please [http://code.google.com/p/zaproxy/issues/list report it]&lt;br /&gt;
&lt;br /&gt;
==Localization==&lt;br /&gt;
&lt;br /&gt;
Are you fluent in another language? Can you help translate ZAP into that language?&lt;br /&gt;
&lt;br /&gt;
If so then please get in touch.&lt;br /&gt;
&lt;br /&gt;
==Development==&lt;br /&gt;
&lt;br /&gt;
If you fancy having a go at adding functionality to ZAP then please get in touch via the [http://groups.google.com/group/zaproxy-develop zaproxy-develop Google Group].&lt;br /&gt;
&lt;br /&gt;
Again, you do not have to be a security expect to contribute code - working on ZAP could be great way to learn more about web application security!&lt;br /&gt;
&lt;br /&gt;
If you actively contribute to ZAP then you will be invited to join the project. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!---- ==== Project About ==== &lt;br /&gt;
{{:GPC_Project_Details/OWASP_ZAP | OWASP Project Identification Tab}} ---&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Project About ====&lt;br /&gt;
{{:Projects/OWASP Zed Attack Proxy Project | Project About}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_Project|Zed Attack Proxy Project]] [[Category:OWASP_Tool]] [[Category:OWASP_Release_Quality_Tool|OWASP Release Quality Tool]] [[Category:OWASP_Download]]&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=113416</id>
		<title>Projects/OWASP Zed Attack Proxy Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=113416"/>
				<updated>2011-07-05T20:47:43Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Project About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
| project_name = OWASP Zed Attack Proxy Project&lt;br /&gt;
&lt;br /&gt;
| project_home_page = OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
&lt;br /&gt;
| project_description = &lt;br /&gt;
This project, OWASP Zed Attack Proxy Project (ZAP), provides an easy to use integrated penetration testing tool for testing web applications.&lt;br /&gt;
&lt;br /&gt;
It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who a new to penetration testing.&lt;br /&gt;
&lt;br /&gt;
ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually. &lt;br /&gt;
&lt;br /&gt;
| project_license = [http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0]&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Psiinon&lt;br /&gt;
| leader_email1 = psiinon@gmail.com&lt;br /&gt;
| leader_username1 = Psiinon&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Axel Neumann&lt;br /&gt;
| leader_email2 = &lt;br /&gt;
| leader_username2 = Axel_Neumann&lt;br /&gt;
&lt;br /&gt;
| contributor_name[1-10] = &lt;br /&gt;
| contributor_email[1-10] = &lt;br /&gt;
| contributor_username[1-10] = &lt;br /&gt;
&lt;br /&gt;
| pamphlet_link = http://www.owasp.org/images/e/e3/OWASP_ZAP_Flyer.pdf&lt;br /&gt;
&lt;br /&gt;
| presentation_link = http://www.owasp.org/images/c/c8/Conference_Style_slides_for_ZAP.ppt&lt;br /&gt;
&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp-zed-attack-proxy&lt;br /&gt;
&lt;br /&gt;
| project_road_map = http://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project/Roadmap&lt;br /&gt;
&lt;br /&gt;
| links_url1 = http://code.google.com/p/zaproxy/&lt;br /&gt;
| links_name1 = ZAP's Google Code page&lt;br /&gt;
&lt;br /&gt;
| links_url2 = http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
| links_name2 = Downloads&lt;br /&gt;
&lt;br /&gt;
| links_url3 = http://code.google.com/p/zaproxy/issues/list&lt;br /&gt;
| links_name3 = Issues&lt;br /&gt;
&lt;br /&gt;
| links_url4 = http://code.google.com/p/zaproxy/wiki/HelpIntro&lt;br /&gt;
| links_name4 = User Guide&lt;br /&gt;
&lt;br /&gt;
| links_url5 = http://freshmeat.net/projects/zed-attack-proxy-zap&lt;br /&gt;
| links_name5 = Freshmeat page&lt;br /&gt;
&lt;br /&gt;
| links_url6 = http://groups.google.com/group/zaproxy-develop&lt;br /&gt;
| links_name6 = Developer Group&lt;br /&gt;
&lt;br /&gt;
| links_url7 = http://pentest4devs.blogspot.com/ &lt;br /&gt;
| links_name7 = Penetration Testing for Developers Blog &lt;br /&gt;
&lt;br /&gt;
| links_url8 = http://www.owasp.org/index.php/GPC_Project_Assessment/OWASP_Zed_Attack_Proxy_Project/ZAP_1.1.0&lt;br /&gt;
| links_name8 =  GPC Project Assessment/OWASP Zed Attack Proxy Project/ZAP 1.1.0&lt;br /&gt;
&lt;br /&gt;
| release_1 = ZAP 1.0.0&lt;br /&gt;
&lt;br /&gt;
| release_2 = ZAP 1.1.0&lt;br /&gt;
&lt;br /&gt;
| release_3 = ZAP 1.2.0&lt;br /&gt;
&lt;br /&gt;
| release_4 = ZAP 1.3.0&lt;br /&gt;
&lt;br /&gt;
| release_5 = ZAP 1.3.1&lt;br /&gt;
&lt;br /&gt;
| release_6 =&lt;br /&gt;
&lt;br /&gt;
| project_about_page = Projects/OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=113415</id>
		<title>Projects/OWASP Zed Attack Proxy Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=113415"/>
				<updated>2011-07-05T20:43:49Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Project About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
| project_name = OWASP Zed Attack Proxy Project&lt;br /&gt;
&lt;br /&gt;
| project_home_page = OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
&lt;br /&gt;
| project_description = &lt;br /&gt;
This project, OWASP Zed Attack Proxy Project (ZAP), provides an easy to use integrated penetration testing tool for testing web applications.&lt;br /&gt;
&lt;br /&gt;
It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who a new to penetration testing.&lt;br /&gt;
&lt;br /&gt;
ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually. &lt;br /&gt;
&lt;br /&gt;
| project_license = [http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0]&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Psiinon&lt;br /&gt;
| leader_email1 = psiinon@gmail.com&lt;br /&gt;
| leader_username1 = Psiinon&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Axel Neumann&lt;br /&gt;
| leader_email2 = &lt;br /&gt;
| leader_username2 = Axel_Neumann&lt;br /&gt;
&lt;br /&gt;
| contributor_name[1-10] = &lt;br /&gt;
| contributor_email[1-10] = &lt;br /&gt;
| contributor_username[1-10] = &lt;br /&gt;
&lt;br /&gt;
| pamphlet_link = http://www.owasp.org/images/e/e3/OWASP_ZAP_Flyer.pdf&lt;br /&gt;
&lt;br /&gt;
| presentation_link = http://www.owasp.org/images/c/c8/Conference_Style_slides_for_ZAP.ppt&lt;br /&gt;
&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp-zed-attack-proxy&lt;br /&gt;
&lt;br /&gt;
| project_road_map = http://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project/Roadmap&lt;br /&gt;
&lt;br /&gt;
| links_url1 = http://code.google.com/p/zaproxy/&lt;br /&gt;
| links_name1 = ZAP's Google Code page&lt;br /&gt;
&lt;br /&gt;
| links_url2 = http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
| links_name2 = Downloads&lt;br /&gt;
&lt;br /&gt;
| links_url3 = http://code.google.com/p/zaproxy/issues/list&lt;br /&gt;
| links_name3 = Issues&lt;br /&gt;
&lt;br /&gt;
| links_url4 = http://code.google.com/p/zaproxy/wiki/HelpIntro&lt;br /&gt;
| links_name4 = User Guide&lt;br /&gt;
&lt;br /&gt;
| links_url5 = http://freshmeat.net/projects/zed-attack-proxy-zap&lt;br /&gt;
| links_name5 = Freshmeat page&lt;br /&gt;
&lt;br /&gt;
| links_url6 = http://groups.google.com/group/zaproxy-develop&lt;br /&gt;
| links_name6 = Developer Group&lt;br /&gt;
&lt;br /&gt;
| links_url7 = http://pentest4devs.blogspot.com/ &lt;br /&gt;
| links_name7 = Penetration Testing for Developers Blog &lt;br /&gt;
&lt;br /&gt;
| links_url8 = http://www.owasp.org/index.php/GPC_Project_Assessment/OWASP_Zed_Attack_Proxy_Project/ZAP_1.1.0&lt;br /&gt;
| links_name8 =  GPC Project Assessment/OWASP Zed Attack Proxy Project/ZAP 1.1.0&lt;br /&gt;
&lt;br /&gt;
| release_1 = ZAP 1.0.0&lt;br /&gt;
&lt;br /&gt;
| release_2 = ZAP 1.1.0&lt;br /&gt;
&lt;br /&gt;
| release_3 = ZAP 1.2.0&lt;br /&gt;
&lt;br /&gt;
| release_4 = ZAP 1.3.0&lt;br /&gt;
&lt;br /&gt;
| release_5 = ZAP 1.3.1&lt;br /&gt;
&lt;br /&gt;
| project_about_page = Projects/OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=113414</id>
		<title>Projects/OWASP Zed Attack Proxy Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=113414"/>
				<updated>2011-07-05T20:42:28Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Project About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
| project_name = OWASP Zed Attack Proxy Project&lt;br /&gt;
&lt;br /&gt;
| project_home_page = OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
&lt;br /&gt;
| project_description = &lt;br /&gt;
This project, OWASP Zed Attack Proxy Project (ZAP), provides an easy to use integrated penetration testing tool for testing web applications.&lt;br /&gt;
&lt;br /&gt;
It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who a new to penetration testing.&lt;br /&gt;
&lt;br /&gt;
ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually. &lt;br /&gt;
&lt;br /&gt;
| project_license = [http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0]&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Psiinon&lt;br /&gt;
| leader_email1 = psiinon@gmail.com&lt;br /&gt;
| leader_username1 = Psiinon&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Axel Neumann&lt;br /&gt;
| leader_email2 = &lt;br /&gt;
| leader_username2 = Axel_Neumann&lt;br /&gt;
&lt;br /&gt;
| contributor_name[1-10] = &lt;br /&gt;
| contributor_email[1-10] = &lt;br /&gt;
| contributor_username[1-10] = &lt;br /&gt;
&lt;br /&gt;
| pamphlet_link = http://www.owasp.org/images/e/e3/OWASP_ZAP_Flyer.pdf&lt;br /&gt;
&lt;br /&gt;
| presentation_link = http://www.owasp.org/images/c/c8/Conference_Style_slides_for_ZAP.ppt&lt;br /&gt;
&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp-zed-attack-proxy&lt;br /&gt;
&lt;br /&gt;
| project_road_map = http://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project/Roadmap&lt;br /&gt;
&lt;br /&gt;
| links_url1 = http://code.google.com/p/zaproxy/&lt;br /&gt;
| links_name1 = ZAP's Google Code page&lt;br /&gt;
&lt;br /&gt;
| links_url2 = http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
| links_name2 = Downloads&lt;br /&gt;
&lt;br /&gt;
| links_url3 = http://code.google.com/p/zaproxy/issues/list&lt;br /&gt;
| links_name3 = Issues&lt;br /&gt;
&lt;br /&gt;
| links_url4 = http://code.google.com/p/zaproxy/wiki/HelpIntro&lt;br /&gt;
| links_name4 = User Guide&lt;br /&gt;
&lt;br /&gt;
| links_url5 = http://freshmeat.net/projects/zed-attack-proxy-zap&lt;br /&gt;
| links_name5 = Freshmeat page&lt;br /&gt;
&lt;br /&gt;
| links_url6 = http://groups.google.com/group/zaproxy-develop&lt;br /&gt;
| links_name6 = Developer Group&lt;br /&gt;
&lt;br /&gt;
| links_url7 = http://pentest4devs.blogspot.com/ &lt;br /&gt;
| links_name7 = Penetration Testing for Developers Blog &lt;br /&gt;
&lt;br /&gt;
| links_url8 = http://www.owasp.org/index.php/GPC_Project_Assessment/OWASP_Zed_Attack_Proxy_Project/ZAP_1.1.0&lt;br /&gt;
| links_name8 =  GPC Project Assessment/OWASP Zed Attack Proxy Project/ZAP 1.1.0&lt;br /&gt;
&lt;br /&gt;
| release_1 = ZAP 1.0.0&lt;br /&gt;
&lt;br /&gt;
| release_2 = ZAP 1.1.0&lt;br /&gt;
&lt;br /&gt;
| release_3 = ZAP 1.2.0&lt;br /&gt;
&lt;br /&gt;
| release_4 = ZAP 1.3.0&lt;br /&gt;
&lt;br /&gt;
| release_5 = ZAP 1.3.1&lt;br /&gt;
&lt;br /&gt;
| release_6 = &lt;br /&gt;
&lt;br /&gt;
| project_about_page = Projects/OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.1/Assessment&amp;diff=113413</id>
		<title>Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.1/Assessment</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.1/Assessment&amp;diff=113413"/>
				<updated>2011-07-05T20:35:06Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: Created page with &amp;quot;&amp;lt;small&amp;gt;Click here to return to project's main page&amp;lt;/small&amp;gt;&amp;lt;br&amp;gt;  == Stable Release Review of the OWASP Zed Attack Proxy Project - [[Projects/OW...&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;small&amp;gt;[[:OWASP Zed Attack Proxy Project|Click here to return to project's main page]]&amp;lt;/small&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Stable Release Review of the OWASP Zed Attack Proxy Project - [[Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.1|Release ZAP 1.3.1]] ==&lt;br /&gt;
&lt;br /&gt;
==== Project Leader for this Release ====&lt;br /&gt;
'''''[[User:Psiinon|Psiinon]]'s Pre-Assessment Checklist:'''''&lt;br /&gt;
&lt;br /&gt;
{{ Pre-Assessment Questions - Tools&lt;br /&gt;
| 1. Is this release associated with a project containing at least the [[Assessing_Project_Health#Project_Wiki_Page_Minimal_Content|Project Wiki Page Minimum Content]]  information?&lt;br /&gt;
= I believe so&lt;br /&gt;
&lt;br /&gt;
| 2. Is your tool licensed under an open source license? &lt;br /&gt;
= Yes - Apache License 2.0, referenced on both http://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project and http://code.google.com/p/zaproxy/&lt;br /&gt;
&lt;br /&gt;
| 3. Is the source code and any documentation available in an online project repository? &lt;br /&gt;
= Yes - http://code.google.com/p/zaproxy/source/checkout&lt;br /&gt;
&lt;br /&gt;
| 4. Is there working code? &lt;br /&gt;
= Yes - http://code.google.com/p/zaproxy/source/checkout&lt;br /&gt;
&lt;br /&gt;
| 5. Is there a roadmap for this project release which will take it from Alpha to Stable release? &lt;br /&gt;
= Yes - http://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project#tab=Roadmap&lt;br /&gt;
&lt;br /&gt;
| 6. Are the Alpha pre-assessment items complete?&lt;br /&gt;
= I believe so&lt;br /&gt;
&lt;br /&gt;
| 7. Is there an installer or stand-alone executable? &lt;br /&gt;
= Yes, for Windows, Linux and Mac OS (being generated now) - http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
&lt;br /&gt;
| 8. Is there user documentation on the OWASP project wiki page? &lt;br /&gt;
= There is some documentation on the project page http://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project, but this also references the Google Code page which includes the full user guide: http://code.google.com/p/zaproxy/wiki/HelpIntro, the latter is generated from the java help pages - migrating it to the OWASP wiki could prove tricky&lt;br /&gt;
&lt;br /&gt;
| 9. Is there an &amp;quot;About box&amp;quot; or similar help item which lists the following? &lt;br /&gt;
= Yes - there is an about box which include things like the license and OWASP project page link. The credits are in the help file and online here: http://code.google.com/p/zaproxy/wiki/HelpCredits&lt;br /&gt;
&lt;br /&gt;
| 10. Is there documentation on how to build the tool from source including obtaining the source from the code repository? &lt;br /&gt;
= Yes - http://code.google.com/p/zaproxy/wiki/Building&lt;br /&gt;
&lt;br /&gt;
| 11. Is the tool documentation stored in the same repository as the source code?&lt;br /&gt;
= Yes - http://code.google.com/p/zaproxy/source/browse/#svn/wiki&lt;br /&gt;
 &lt;br /&gt;
| 12. Are the Alpha and Beta pre-assessment items complete? &lt;br /&gt;
= I believe so&lt;br /&gt;
&lt;br /&gt;
| 13. Does the tool include documentation built into the tool? &lt;br /&gt;
= Yes - a full help file is included which is also available online: http://code.google.com/p/zaproxy/wiki/HelpIntro &lt;br /&gt;
&lt;br /&gt;
| 14. Does the tool include build scripts to automate builds? &lt;br /&gt;
= Yes - http://code.google.com/p/zaproxy/source/browse/trunk/build/build.xml&lt;br /&gt;
&lt;br /&gt;
| 15. Is there a publicly accessible bug tracking system? &lt;br /&gt;
= Yes - http://code.google.com/p/zaproxy/issues/list&lt;br /&gt;
&lt;br /&gt;
| 16. Have any existing limitations of the tool been documented? &lt;br /&gt;
= Yes - all known limitations raised as bugs&lt;br /&gt;
&lt;br /&gt;
}}&lt;br /&gt;
&lt;br /&gt;
==== First Reviewer ====&lt;br /&gt;
'''''[[User:Dr. Markus Maria Miedaner|Markus]]'s Review:'''''&amp;lt;br /&amp;gt;&lt;br /&gt;
&amp;lt;small&amp;gt;Ideally, reviewers should be an existing OWASP project leader or chapter leader.&amp;lt;/small&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{ Assessment Questions - Tools&lt;br /&gt;
&lt;br /&gt;
| 1. Is an installer for the tool available and easy to use? How close does it reach the goal of a fully automated installer?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 2. Is the end user documentation complete, relevant and presented on the OWASP wiki page?&lt;br /&gt;
&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
|3. Does the tool have an “About box” or similar help item which allows the end user to get an overview of the state of this tool? Is this information readily available and easy to find?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 4. Does the documentation on building the source provide the necessary information and detail to allow someone to build the tool? Is there sufficient detail and information for the target user? Is there any domain specific knowledge that is assumed and not provided?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 5. Is the tool's documentation available with the source code and would it readily discoverable by a new user of the tool?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 6. Is there anything missing that is critical enough to keep the release at a alpha quality?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
| 7. Does the tool substantially address the application security issues it was created to solve?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 8. Is the tool reasonably easy to use?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
| 9. Does the documentation meet the needs of the tool users and is easily found?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 10. Do the build scripts work as expected? Can you build the tool? The goal is a “One-click” build.&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 11. Is the bug tracking system usable? Is it hosted at the same place as the source code? (e.g. Google Code, Sourceforge)&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 12. Have you noted any limitations of the tool that are not already documented by the project lead.&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 13. Would you consider using this tool in your day to day work assuming your professional work includes a reason to use this tool? Why or why not?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 14. What, if anything, is missing which would make this a more useful tool? Is what is missing critical enough to keep the release at a beta quality?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
}}&lt;br /&gt;
&lt;br /&gt;
==== Second Reviewer ====&lt;br /&gt;
'''''[[User:EoinKeary|EoinKeary]]'s Review:'''''&amp;lt;br /&amp;gt;&lt;br /&gt;
&amp;lt;small&amp;gt;It is recommended that an OWASP board member or Global Projects Committee member be the second reviewer on Quality releases. The board has the initial option to review the project, followed by the Global Projects Committee.&amp;lt;/small&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{ Assessment Questions - Tools&lt;br /&gt;
&lt;br /&gt;
| 1. Is an installer for the tool available and easy to use? How close does it reach the goal of a fully automated installer?      &lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 2. Is the end user documentation complete, relevant and presented on the OWASP wiki page?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
|3. Does the tool have an “About box” or similar help item which allows the end user to get an overview of the state of this tool? Is this information readily available and easy to find?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 4. Does the documentation on building the source provide the necessary information and detail to allow someone to build the tool? Is there sufficient detail and information for the target user? Is there any domain specific knowledge that is assumed and not provided?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 5. Is the tool's documentation available with the source code and would it readily discoverable by a new user of the tool?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 6. Is there anything missing that is critical enough to keep the release at a alpha quality?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 7. Does the tool substantially address the application security issues it was created to solve?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 8. Is the tool reasonably easy to use?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 9. Does the documentation meet the needs of the tool users and is easily found?&lt;br /&gt;
=Yes&lt;br /&gt;
&lt;br /&gt;
| 10. Do the build scripts work as expected? Can you build the tool? The goal is a “One-click” build.&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 11. Is the bug tracking system usable? Is it hosted at the same place as the source code? (e.g. Google Code, Sourceforge)&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 12. Have you noted any limitations of the tool that are not already documented by the project lead.&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 13. Would you consider using this tool in your day to day work assuming your professional work includes a reason to use this tool? Why or why not?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
| 14. What, if anything, is missing which would make this a more useful tool? Is what is missing critical enough to keep the release at a beta quality?&lt;br /&gt;
=&lt;br /&gt;
&lt;br /&gt;
}}&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/GPC/Assessment/ZAP_1.3.1&amp;diff=113412</id>
		<title>Projects/OWASP Zed Attack Proxy Project/GPC/Assessment/ZAP 1.3.1</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/GPC/Assessment/ZAP_1.3.1&amp;diff=113412"/>
				<updated>2011-07-05T20:33:41Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: Created page with &amp;quot;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release Rating&amp;lt;/noinclude&amp;gt; | rating = -1 | criteria_version= 2 | project_name= OWASP Zed Attack Proxy Project | release_na...&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release Rating&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
| rating = -1&lt;br /&gt;
| criteria_version= 2&lt;br /&gt;
| project_name= OWASP Zed Attack Proxy Project&lt;br /&gt;
| release_name= ZAP 1.3.1&lt;br /&gt;
}}&lt;br /&gt;
&amp;lt;noinclude&amp;gt;[[Category: Release Assessment]]&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/Current&amp;diff=113411</id>
		<title>Projects/OWASP Zed Attack Proxy Project/Releases/Current</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/Current&amp;diff=113411"/>
				<updated>2011-07-05T20:32:32Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: Redirected page to Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.1&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;#REDIRECT [[Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.1]]&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.1&amp;diff=113410</id>
		<title>Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.1</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.1&amp;diff=113410"/>
				<updated>2011-07-05T20:30:29Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: Created page with &amp;quot;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt; | project_name = OWASP Zed Attack Proxy Project | project_home_page = OWASP Zed Attack Proxy Pr...&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
| project_name = OWASP Zed Attack Proxy Project&lt;br /&gt;
| project_home_page = OWASP Zed Attack Proxy Project&lt;br /&gt;
| release_name = ZAP 1.3.1&lt;br /&gt;
| release_date = 07/05/2011&lt;br /&gt;
&lt;br /&gt;
| release_description = &lt;br /&gt;
&lt;br /&gt;
'''This release is a bugfix release without any new features. Compared to older releases, the 1.3.x branch includes the following significant changes:'''&lt;br /&gt;
&lt;br /&gt;
* Fuzzing: Strings in a response can now be fuzzed to try to find vulnerabilities. Anti CRSF tokens can be detected and automatically regenerated when fuzzing. This functionality is based on code from the OWASP JBroFuzz project.&lt;br /&gt;
* Dynamic SSL certificates: The support for SSL connections was improved and simplified. User's can now create their own root certificate and distribute this into their HTTP clients.&lt;br /&gt;
* Daemon mode: Starting ZAP with the &amp;quot;-daemon&amp;quot; command line option will cause it to run in the background in 'headless' mode, meaning that no UI is displayed.&lt;br /&gt;
* API: An initial API has been implemented in XML, JSON and HTML.&lt;br /&gt;
* Beanshell integration: The BeanShell is an interactive Java shell that can be used to execute BeanShell scripts. BeanShell integration in OWASP ZAP enables you to write scripts using the ZAP functions and data set.&lt;br /&gt;
* Full internationalisation: All displayed strings are now fully internationalised.&lt;br /&gt;
* Localisation: Out of the box support for the following languages: English, Brazilian Portuguese, Chinese, French, German, Greek, Indonesian, Japanese, Polish, Spanish&lt;br /&gt;
&lt;br /&gt;
| release_license = [http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0]&lt;br /&gt;
| release_download_link = http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Psiinon&lt;br /&gt;
| leader_email1 = psiinon@gmail.com&lt;br /&gt;
| leader_username1 = Psiinon&lt;br /&gt;
&lt;br /&gt;
| release_notes = http://www.owasp.org/index.php/Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.1/Notes&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Zed_Attack_Proxy_Project&amp;diff=113408</id>
		<title>OWASP Zed Attack Proxy Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Zed_Attack_Proxy_Project&amp;diff=113408"/>
				<updated>2011-07-05T20:26:48Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Builders}}&lt;br /&gt;
{{OWASP Breakers}}&lt;br /&gt;
==== Main  ====&lt;br /&gt;
[[Image:ZAP-ScreenShotAddAlert.png|thumb|300px|right|ZAP Add Alert Screen Shot]]&lt;br /&gt;
[[Image:ZAP-ScreenShotHelp.png|thumb|300px|right|ZAP Help Screen Shot]]&lt;br /&gt;
[[Image:ZAP-ScreenShotHistoryFilter.png|thumb|300px|right|ZAP History Filter Screen Shot]]&lt;br /&gt;
[[Image:ZAP-ScreenShotSearchTab.png|thumb|300px|right|ZAP Search Tab Screen Shot]]&lt;br /&gt;
&lt;br /&gt;
The Zed Attack Proxy (ZAP) is an easy to use integrated penetration testing tool for finding vulnerabilities in web applications. &lt;br /&gt;
&lt;br /&gt;
It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who are new to penetration testing. &lt;br /&gt;
&lt;br /&gt;
ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually.&lt;br /&gt;
&lt;br /&gt;
[[Image:ZAP-Download.png |&lt;br /&gt;
link=http://code.google.com/p/zaproxy/downloads/list]]&lt;br /&gt;
&lt;br /&gt;
'''The current version of ZAP is [http://code.google.com/p/zaproxy/wiki/HelpReleases1_3_1 1.3.1].'''&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Zed Attack Proxy&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Some of ZAP's features:'''&lt;br /&gt;
&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsIntercept Intercepting Proxy]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsAscan Automated scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsPscan Passive scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsBruteforce Brute Force scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsSpider Spider]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsFuzz Fuzzer]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsPortscan Port scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpUiDialogsOptionsDynsslcert Dynamic SSL certificates]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsApi API]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpUiDialogsBeanshell Beanshell integration]&lt;br /&gt;
&lt;br /&gt;
'''Some of ZAP's characteristics:'''&lt;br /&gt;
&lt;br /&gt;
* Easy to install (just requires java 1.6)&lt;br /&gt;
* Ease of use a priority&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpIntro Comprehensive help pages]&lt;br /&gt;
* Fully internationalized&lt;br /&gt;
* Under active development&lt;br /&gt;
* [http://www.apache.org/licenses/LICENSE-2.0 Open source]&lt;br /&gt;
* Free (no paid for 'Pro' version)&lt;br /&gt;
* Cross platform&lt;br /&gt;
* Involvement actively encouraged &lt;br /&gt;
&lt;br /&gt;
'''It supports the following languages:'''&lt;br /&gt;
&lt;br /&gt;
* English&lt;br /&gt;
* Brazilian Portuguese&lt;br /&gt;
* Chinese&lt;br /&gt;
* French&lt;br /&gt;
* Danish&lt;br /&gt;
* German&lt;br /&gt;
* Greek&lt;br /&gt;
* Indonesian&lt;br /&gt;
* Japanese&lt;br /&gt;
* Polish&lt;br /&gt;
* Spanish &lt;br /&gt;
&lt;br /&gt;
ZAP is a fork of the well regarded [http://www.parosproxy.org/ Paros Proxy].&lt;br /&gt;
&lt;br /&gt;
==== Roadmap  ====&lt;br /&gt;
&lt;br /&gt;
Details of previous releases can be found [http://code.google.com/p/zaproxy/wiki/HelpReleasesReleases here]&lt;br /&gt;
&lt;br /&gt;
==Release 1.3.1==&lt;br /&gt;
Version [http://code.google.com/p/zaproxy/wiki/HelpReleases1_3_1 1.3.1] has just been released, which is a bugfix release.&lt;br /&gt;
Compared to previous releases, the 1.3.x branch adds the following main features:&lt;br /&gt;
* Fuzzing (using components from [http://www.owasp.org/index.php/Category:OWASP_JBroFuzz JBroFuzz])&lt;br /&gt;
* Dynamic SSL Certificates&lt;br /&gt;
* Daemon mode and API to allow other tools to interact with ZAP&lt;br /&gt;
* [http://www.beanshell.org/home.html BeanShell] integration&lt;br /&gt;
* Full internationalization&lt;br /&gt;
* Out of the box support for 10 languages&lt;br /&gt;
&lt;br /&gt;
==Future Releases==&lt;br /&gt;
&lt;br /&gt;
Future releases are likely to include:&lt;br /&gt;
* Further improvements to the passive and active automated scanners&lt;br /&gt;
* Further improvements the Spider&lt;br /&gt;
* Fuzzing analysis&lt;br /&gt;
* API extensions&lt;br /&gt;
&lt;br /&gt;
====Get Involved====&lt;br /&gt;
&lt;br /&gt;
Involvement in the development of ZAP is actively encouraged!&lt;br /&gt;
&lt;br /&gt;
You do not have to be a security expert in order to contribute.&lt;br /&gt;
&lt;br /&gt;
Some of the ways you can help:&lt;br /&gt;
&lt;br /&gt;
==Feature Requests==&lt;br /&gt;
&lt;br /&gt;
Please raise new feature requests as enhancement requests here: http://code.google.com/p/zaproxy/issues/list&lt;br /&gt;
&lt;br /&gt;
If there are existing requests you are also interested in then please 'star' them - that way we can see which features people are most interested in and can prioritize them accordingly. &lt;br /&gt;
&lt;br /&gt;
==Feedback==&lt;br /&gt;
&lt;br /&gt;
Please use the [http://groups.google.com/group/zaproxy-develop zaproxy-develop Google Group] for feadback:&lt;br /&gt;
* What do like?&lt;br /&gt;
* What dont you like?&lt;br /&gt;
* What features could be made easier to use?&lt;br /&gt;
* How could the help pages be improved? &lt;br /&gt;
&lt;br /&gt;
==Log issues==&lt;br /&gt;
&lt;br /&gt;
Have you had a problem using ZAP?&lt;br /&gt;
&lt;br /&gt;
If so and its not already been logged then please [http://code.google.com/p/zaproxy/issues/list report it]&lt;br /&gt;
&lt;br /&gt;
==Localization==&lt;br /&gt;
&lt;br /&gt;
Are you fluent in another language? Can you help translate ZAP into that language?&lt;br /&gt;
&lt;br /&gt;
If so then please get in touch.&lt;br /&gt;
&lt;br /&gt;
==Development==&lt;br /&gt;
&lt;br /&gt;
If you fancy having a go at adding functionality to ZAP then please get in touch via the [http://groups.google.com/group/zaproxy-develop zaproxy-develop Google Group].&lt;br /&gt;
&lt;br /&gt;
Again, you do not have to be a security expect to contribute code - working on ZAP could be great way to learn more about web application security!&lt;br /&gt;
&lt;br /&gt;
If you actively contribute to ZAP then you will be invited to join the project. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!---- ==== Project About ==== &lt;br /&gt;
{{:GPC_Project_Details/OWASP_ZAP | OWASP Project Identification Tab}} ---&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Project About ====&lt;br /&gt;
{{:Projects/OWASP Zed Attack Proxy Project | Project About}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_Project|Zed Attack Proxy Project]] [[Category:OWASP_Tool]] [[Category:OWASP_Alpha_Quality_Tool|OWASP Alpha Quality Tool]] [[Category:OWASP_Download]]&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Breakers&amp;diff=112729</id>
		<title>Breakers</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Breakers&amp;diff=112729"/>
				<updated>2011-06-23T14:23:45Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==== OWASP Breakers  ====&lt;br /&gt;
&lt;br /&gt;
{| width=&amp;quot;100%&amp;quot;&lt;br /&gt;
|- valign=&amp;quot;top&amp;quot;&lt;br /&gt;
| &lt;br /&gt;
'''Breakers Community''' &lt;br /&gt;
&lt;br /&gt;
A community of security professionals and stakeholders with the common goal of advancing the state of security in the area of security testing. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Examples''' &lt;br /&gt;
&lt;br /&gt;
TBA&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Target Audience''' &lt;br /&gt;
&lt;br /&gt;
Application Security Professionals, Infrastructure Security Teams, Pentesters &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''What Are OWASP Communities?'''&lt;br /&gt;
&lt;br /&gt;
[http://www.owasp.org/index.php/Builders Builders], Breakers and [http://www.owasp.org/index.php/Defenders Defenders]; the idea of OWASP Communities is to bring together experts in the area that they are best at with the common goal of advancing the state of application security.  This approach allows similar groups of professionals and experts to tackle security problems with the involvement of the most relevant stakeholders.  The intent is to drive high quality output that is immediately usable by the target audience.  More information about this vision can be found [http://michael-coates.blogspot.com/2011/02/vision-for-owasp.html here]&lt;br /&gt;
&lt;br /&gt;
| &lt;br /&gt;
[[Image:OWASP-vision.jpg]] &lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
==== The Community  ====&lt;br /&gt;
&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
{| cellspacing=&amp;quot;1&amp;quot; cellpadding=&amp;quot;1&amp;quot; style=&amp;quot;width: 404px; height: 413px;&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| &amp;amp;nbsp; &amp;lt;br&amp;gt;&lt;br /&gt;
| '''Erwin Geirnaert'''&amp;lt;br&amp;gt; ''ZION SECURITY''&amp;lt;br&amp;gt; ''erwin.geirnaert@zionsecurity.com''&amp;lt;br&amp;gt; ''http://www.zionsecurity.com/'' &amp;lt;br&amp;gt; ''@ZIONSECURITY''&lt;br /&gt;
| &lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| [[Image:SimonBennetts-OWASP.jpg]]&amp;lt;br&amp;gt; &lt;br /&gt;
| '''Simon Bennetts''' &amp;lt;br&amp;gt; [[:OWASP Zed Attack Proxy Project|OWASP Zed Attack Proxy Project]] Lead &amp;lt;br&amp;gt; psiinon@owasp.org &amp;lt;br&amp;gt; http://pentest4devs.blogspot.com/ &amp;lt;br&amp;gt; @psiinon&lt;br /&gt;
| &lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| &amp;amp;nbsp; &amp;lt;br&amp;gt; &lt;br /&gt;
| '''Axel Neumann''' &amp;lt;br&amp;gt; [[:OWASP Zed Attack Proxy Project|OWASP Zed Attack Proxy Project]] &amp;lt;br&amp;gt; @x3l_ch&lt;br /&gt;
| &lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| Your pic; &amp;lt;br&amp;gt;&lt;br /&gt;
| '''Your name'''&amp;lt;br&amp;gt; ''Your company/project'' &amp;lt;br&amp;gt; ''Your email'' &amp;lt;br&amp;gt; ''Your website'' &amp;lt;br&amp;gt; ''Your twitter''&lt;br /&gt;
|&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| Your pic; &amp;lt;br&amp;gt;&lt;br /&gt;
| '''Your name'''&amp;lt;br&amp;gt; ''Your company/project'' &amp;lt;br&amp;gt; ''Your email'' &amp;lt;br&amp;gt; ''Your website'' &amp;lt;br&amp;gt; ''Your twitter''&lt;br /&gt;
|&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Want to contribute to the OWASP Breakers Community? &amp;lt;br&amp;gt;Add your info here!&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
==== Roadmap  ====&lt;br /&gt;
To be determined &lt;br /&gt;
&lt;br /&gt;
==== Official Breaker Projects  ====&lt;br /&gt;
&lt;br /&gt;
To be determined &lt;br /&gt;
&lt;br /&gt;
==== All Breaker Related Projects ====&lt;br /&gt;
All projects that are related to the OWASP Breakers community can be found at the following link: [[:Category:OWASP_Breakers]]&lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs /&amp;gt; &amp;lt;br&amp;gt;&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/GPC/Assessment/ZAP_1.3.0&amp;diff=112191</id>
		<title>Projects/OWASP Zed Attack Proxy Project/GPC/Assessment/ZAP 1.3.0</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/GPC/Assessment/ZAP_1.3.0&amp;diff=112191"/>
				<updated>2011-06-15T15:56:28Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release Rating&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
| rating = -1&lt;br /&gt;
| criteria_version= 2&lt;br /&gt;
| project_name= OWASP Zed Attack Proxy Project&lt;br /&gt;
| release_name= ZAP 1.3.0&lt;br /&gt;
}}&lt;br /&gt;
&amp;lt;noinclude&amp;gt;[[Category: Release Assessment]]&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/Current&amp;diff=112190</id>
		<title>Projects/OWASP Zed Attack Proxy Project/Releases/Current</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/Current&amp;diff=112190"/>
				<updated>2011-06-15T15:52:20Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: Redirected page to Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.0&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;#REDIRECT [[Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.0]]&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=112188</id>
		<title>Projects/OWASP Zed Attack Proxy Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=112188"/>
				<updated>2011-06-15T15:48:24Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Project About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
| project_name = OWASP Zed Attack Proxy Project&lt;br /&gt;
&lt;br /&gt;
| project_home_page = OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
&lt;br /&gt;
| project_description = &lt;br /&gt;
This project, OWASP Zed Attack Proxy Project (ZAP), provides an easy to use integrated penetration testing tool for testing web applications.&lt;br /&gt;
&lt;br /&gt;
It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who a new to penetration testing.&lt;br /&gt;
&lt;br /&gt;
ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually. &lt;br /&gt;
&lt;br /&gt;
| project_license = [http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0]&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Psiinon&lt;br /&gt;
| leader_email1 = psiinon@gmail.com&lt;br /&gt;
| leader_username1 = Psiinon&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Axel Neumann&lt;br /&gt;
| leader_email2 = &lt;br /&gt;
| leader_username2 = Axel_Neumann&lt;br /&gt;
&lt;br /&gt;
| contributor_name[1-10] = &lt;br /&gt;
| contributor_email[1-10] = &lt;br /&gt;
| contributor_username[1-10] = &lt;br /&gt;
&lt;br /&gt;
| pamphlet_link = http://www.owasp.org/images/e/e3/OWASP_ZAP_Flyer.pdf&lt;br /&gt;
&lt;br /&gt;
| presentation_link = http://www.owasp.org/images/c/c8/Conference_Style_slides_for_ZAP.ppt&lt;br /&gt;
&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp-zed-attack-proxy&lt;br /&gt;
&lt;br /&gt;
| project_road_map = http://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project/Roadmap&lt;br /&gt;
&lt;br /&gt;
| links_url1 = http://code.google.com/p/zaproxy/&lt;br /&gt;
| links_name1 = ZAP's Google Code page&lt;br /&gt;
&lt;br /&gt;
| links_url2 = http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
| links_name2 = Downloads&lt;br /&gt;
&lt;br /&gt;
| links_url3 = http://code.google.com/p/zaproxy/issues/list&lt;br /&gt;
| links_name3 = Issues&lt;br /&gt;
&lt;br /&gt;
| links_url4 = http://code.google.com/p/zaproxy/wiki/HelpIntro&lt;br /&gt;
| links_name4 = User Guide&lt;br /&gt;
&lt;br /&gt;
| links_url5 = http://freshmeat.net/projects/zed-attack-proxy-zap&lt;br /&gt;
| links_name5 = Freshmeat page&lt;br /&gt;
&lt;br /&gt;
| links_url6 = http://groups.google.com/group/zaproxy-develop&lt;br /&gt;
| links_name6 = Developer Group&lt;br /&gt;
&lt;br /&gt;
| links_url7 = http://pentest4devs.blogspot.com/ &lt;br /&gt;
| links_name7 = Penetration Testing for Developers Blog &lt;br /&gt;
&lt;br /&gt;
| links_url8 = http://www.owasp.org/index.php/GPC_Project_Assessment/OWASP_Zed_Attack_Proxy_Project/ZAP_1.1.0&lt;br /&gt;
| links_name8 =  GPC Project Assessment/OWASP Zed Attack Proxy Project/ZAP 1.1.0&lt;br /&gt;
&lt;br /&gt;
| release_1 = ZAP 1.0.0&lt;br /&gt;
&lt;br /&gt;
| release_2 = ZAP 1.1.0&lt;br /&gt;
&lt;br /&gt;
| release_3 = ZAP 1.2.0&lt;br /&gt;
&lt;br /&gt;
| release_4 = ZAP 1.3.0&lt;br /&gt;
&lt;br /&gt;
| release_5 = &lt;br /&gt;
&lt;br /&gt;
| project_about_page = Projects/OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/GPC/Assessment/ZAP_1.3.0&amp;diff=112187</id>
		<title>Projects/OWASP Zed Attack Proxy Project/GPC/Assessment/ZAP 1.3.0</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/GPC/Assessment/ZAP_1.3.0&amp;diff=112187"/>
				<updated>2011-06-15T15:44:52Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: Created page with &amp;quot;TBA&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;TBA&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.0/Notes&amp;diff=112186</id>
		<title>Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.0/Notes</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.0/Notes&amp;diff=112186"/>
				<updated>2011-06-15T15:42:19Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: Created page with &amp;quot;The following changes were made in this release:   == Significant changes: ==  '''Fuzzing'''  Strings in a response can now be fuzzed to try to find vulnerabilities. Anti CRSF to...&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;The following changes were made in this release: &lt;br /&gt;
&lt;br /&gt;
== Significant changes: ==&lt;br /&gt;
&lt;br /&gt;
'''Fuzzing'''&lt;br /&gt;
&lt;br /&gt;
Strings in a response can now be fuzzed to try to find vulnerabilities.&lt;br /&gt;
Anti CRSF tokens can be detected and automatically regenerated when fuzzing.&lt;br /&gt;
This functionality is based on code from the OWASP JBroFuzz project.&lt;br /&gt;
&lt;br /&gt;
'''Dynamic SSL certificates'''&lt;br /&gt;
&lt;br /&gt;
The support for SSL connections was improved and simplified.&lt;br /&gt;
User's can now create their own root certificate and distribute this into their HTTP clients.&lt;br /&gt;
&lt;br /&gt;
'''Daemon mode and API'''&lt;br /&gt;
&lt;br /&gt;
Starting ZAP with the &amp;quot;-daemon&amp;quot; command line option will cause it to run in the background in 'headless' mode, &lt;br /&gt;
meaning that no UI is displayed.&lt;br /&gt;
&lt;br /&gt;
An initial API has been implemented in XML, JSON and HTML.&lt;br /&gt;
&lt;br /&gt;
If ZAP is running as a daemon then the API is automatically enabled, otherwise the API must be enabled via the Options API screen.&amp;lt;br&amp;gt;&lt;br /&gt;
The API can be navigated by opening http://zap/ in your browser when proxying via ZAP. &lt;br /&gt;
&lt;br /&gt;
'''Beanshell integration'''&lt;br /&gt;
&lt;br /&gt;
The BeanShell is an interactive Java shell that can be used to execute BeanShell scripts. These scripts are a simplified form of Java that use many elements from Java syntax, but in a simpler scripting format. All Java code is also valid BeanShell code. BeanShell integration in OWASP ZAP enables you to write scripts using the ZAP functions and data set. This can be a very powerful feature for analyzing web applications.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Full internationalisation'''&lt;br /&gt;
&lt;br /&gt;
All display string are now fully internationalised.&lt;br /&gt;
&lt;br /&gt;
'''Localisation'''&lt;br /&gt;
&lt;br /&gt;
Out of the box support for the following languages:&lt;br /&gt;
* English&lt;br /&gt;
* Brazilian Portuguese&lt;br /&gt;
* Chinese&lt;br /&gt;
* French&lt;br /&gt;
* German&lt;br /&gt;
* Greek&lt;br /&gt;
* Indonesian&lt;br /&gt;
* Japanese&lt;br /&gt;
* Polish&lt;br /&gt;
* Spanish&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Minor changes: ==&lt;br /&gt;
&lt;br /&gt;
'''Hex view'''&lt;br /&gt;
&lt;br /&gt;
The Request and Response tabs now provide a 'Hex View' option which will display the request and response bodies in hex format. &lt;br /&gt;
&lt;br /&gt;
'''Search results'''&lt;br /&gt;
&lt;br /&gt;
The Search tab now displays all instances of a string found rather than just the first instance in each request or response. &lt;br /&gt;
&lt;br /&gt;
'''Exclude URLs'''&lt;br /&gt;
&lt;br /&gt;
URLs can be explicitly excluded from the active scanner, spider and from the proxy.&lt;br /&gt;
&lt;br /&gt;
'''Copy support'''&lt;br /&gt;
&lt;br /&gt;
Most of the panels now provide a 'right click' 'Copy' menu option, including the Port Scan and Brute Force panels.&lt;br /&gt;
&lt;br /&gt;
'''Undo/Redo support'''&lt;br /&gt;
&lt;br /&gt;
All of the input fields now support Undo/Redo actions using the operating systems default Undo/Redo accelerators:&lt;br /&gt;
* Windows/Linux: Ctrl+Z / Ctrl+Y&lt;br /&gt;
* Mac OS X: Cmd+Z / Cmd+Shift+Z&lt;br /&gt;
&lt;br /&gt;
'''Port scanner proxy support and timeout option'''&lt;br /&gt;
&lt;br /&gt;
The Port Scanner can now use the outgoing proxy (if configured) and the timeout in milliseconds can also now be set.&lt;br /&gt;
&lt;br /&gt;
'''Request and response break buttons'''&lt;br /&gt;
&lt;br /&gt;
There are now 2 'Set Break' buttons to allow breaks to be set on all requests and all responses independently. &lt;br /&gt;
&lt;br /&gt;
'''Expand Sites and Information tab buttons'''&lt;br /&gt;
&lt;br /&gt;
There are now 2 buttons which allow you to switch between having the Sites and Information tabs expanded.&lt;br /&gt;
&lt;br /&gt;
'''Break tab icon changes colour when break point hit'''&lt;br /&gt;
&lt;br /&gt;
While the Break tab is not in use its icon is a grey cross.&lt;br /&gt;
When a break point is hit the tab icon is changed to a red cross.&lt;br /&gt;
&lt;br /&gt;
'''Adjustable timeout'''&lt;br /&gt;
&lt;br /&gt;
The Option: Connection screen allows you to set the timeout in seconds&lt;br /&gt;
to make it easier to test slow applications.&lt;br /&gt;
&lt;br /&gt;
'''Library updates'''&lt;br /&gt;
&lt;br /&gt;
Most of the libraries used by ZAP have been updated to the latest versions.&lt;br /&gt;
&lt;br /&gt;
'''A new icon :)'''&lt;br /&gt;
&lt;br /&gt;
Thanks to Simon Egli and all others for submitting cool icon suggestions.&lt;br /&gt;
&lt;br /&gt;
== Known Issues: ==&lt;br /&gt;
&lt;br /&gt;
'''Mac OS X: Dynamic SSL and Google Chrome'''&lt;br /&gt;
&lt;br /&gt;
Currently Dynamic SSL is not working when using Google Chrome. This is because of an unresolved known issue with Google Chrome and Mac OS X Keychain. When importing OWASP ZAP's Root CA into the keychain and requesting a SSL website, an &amp;quot;Invalid certificate&amp;quot; error message is shown.&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.0&amp;diff=112176</id>
		<title>Projects/OWASP Zed Attack Proxy Project/Releases/ZAP 1.3.0</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.0&amp;diff=112176"/>
				<updated>2011-06-15T15:30:22Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: Created page with &amp;quot;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt; | project_name = OWASP Zed Attack Proxy Project | project_home_page = OWASP Zed Attack Proxy Pr...&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
| project_name = OWASP Zed Attack Proxy Project&lt;br /&gt;
| project_home_page = OWASP Zed Attack Proxy Project&lt;br /&gt;
| release_name = ZAP 1.3.0&lt;br /&gt;
| release_date = 06/06/2011&lt;br /&gt;
&lt;br /&gt;
| release_description = &lt;br /&gt;
&lt;br /&gt;
'''This release includes the following significant changes:'''&lt;br /&gt;
&lt;br /&gt;
* Fuzzing: Strings in a response can now be fuzzed to try to find vulnerabilities. Anti CRSF tokens can be detected and automatically regenerated when fuzzing. This functionality is based on code from the OWASP JBroFuzz project.&lt;br /&gt;
* Dynamic SSL certificates: The support for SSL connections was improved and simplified. User's can now create their own root certificate and distribute this into their HTTP clients.&lt;br /&gt;
* Daemon mode: Starting ZAP with the &amp;quot;-daemon&amp;quot; command line option will cause it to run in the background in 'headless' mode, meaning that no UI is displayed.&lt;br /&gt;
* API: An initial API has been implemented in XML, JSON and HTML.&lt;br /&gt;
* Beanshell integration: The BeanShell is an interactive Java shell that can be used to execute BeanShell scripts. BeanShell integration in OWASP ZAP enables you to write scripts using the ZAP functions and data set.&lt;br /&gt;
* Full internationalisation: All displayed strings are now fully internationalised.&lt;br /&gt;
* Localisation: Out of the box support for the following languages: English, Brazilian Portuguese, Chinese, French, German, Greek, Indonesian, Japanese, Polish, Spanish&lt;br /&gt;
&lt;br /&gt;
| release_license = [http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0]&lt;br /&gt;
| release_download_link = http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Psiinon&lt;br /&gt;
| leader_email1 = psiinon@gmail.com&lt;br /&gt;
| leader_username1 = Psiinon&lt;br /&gt;
&lt;br /&gt;
| release_notes = http://www.owasp.org/index.php/Projects/OWASP_Zed_Attack_Proxy_Project/Releases/ZAP_1.3.0/Notes&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=112175</id>
		<title>Projects/OWASP Zed Attack Proxy Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Zed_Attack_Proxy_Project&amp;diff=112175"/>
				<updated>2011-06-15T15:19:01Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Project About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
| project_name = OWASP Zed Attack Proxy Project&lt;br /&gt;
&lt;br /&gt;
| project_home_page = OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
&lt;br /&gt;
| project_description = &lt;br /&gt;
This project, OWASP Zed Attack Proxy Project (ZAP), provides an easy to use integrated penetration testing tool for testing web applications.&lt;br /&gt;
&lt;br /&gt;
It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who a new to penetration testing.&lt;br /&gt;
&lt;br /&gt;
ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually. &lt;br /&gt;
&lt;br /&gt;
| project_license = [http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0]&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Psiinon&lt;br /&gt;
| leader_email1 = psiinon@gmail.com&lt;br /&gt;
| leader_username1 = Psiinon&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Axel Neumann&lt;br /&gt;
| leader_email2 = &lt;br /&gt;
| leader_username2 = Axel_Neumann&lt;br /&gt;
&lt;br /&gt;
| contributor_name[1-10] = &lt;br /&gt;
| contributor_email[1-10] = &lt;br /&gt;
| contributor_username[1-10] = &lt;br /&gt;
&lt;br /&gt;
| pamphlet_link = http://www.owasp.org/images/e/e3/OWASP_ZAP_Flyer.pdf&lt;br /&gt;
&lt;br /&gt;
| presentation_link = http://www.owasp.org/images/c/c8/Conference_Style_slides_for_ZAP.ppt&lt;br /&gt;
&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp-zed-attack-proxy&lt;br /&gt;
&lt;br /&gt;
| project_road_map = http://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project/Roadmap&lt;br /&gt;
&lt;br /&gt;
| links_url1 = http://code.google.com/p/zaproxy/&lt;br /&gt;
| links_name1 = ZAP's Google Code page&lt;br /&gt;
&lt;br /&gt;
| links_url2 = http://code.google.com/p/zaproxy/downloads/list&lt;br /&gt;
| links_name2 = Downloads&lt;br /&gt;
&lt;br /&gt;
| links_url3 = http://code.google.com/p/zaproxy/issues/list&lt;br /&gt;
| links_name3 = Issues&lt;br /&gt;
&lt;br /&gt;
| links_url4 = http://code.google.com/p/zaproxy/wiki/HelpIntro&lt;br /&gt;
| links_name4 = User Guide&lt;br /&gt;
&lt;br /&gt;
| links_url5 = http://freshmeat.net/projects/zed-attack-proxy-zap&lt;br /&gt;
| links_name5 = Freshmeat page&lt;br /&gt;
&lt;br /&gt;
| links_url6 = http://groups.google.com/group/zaproxy-develop&lt;br /&gt;
| links_name6 = Developer Group&lt;br /&gt;
&lt;br /&gt;
| links_url7 = http://pentest4devs.blogspot.com/ &lt;br /&gt;
| links_name7 = Penetration Testing for Developers Blog &lt;br /&gt;
&lt;br /&gt;
| links_url8 = http://www.owasp.org/index.php/GPC_Project_Assessment/OWASP_Zed_Attack_Proxy_Project/ZAP_1.1.0&lt;br /&gt;
| links_name8 =  GPC Project Assessment/OWASP Zed Attack Proxy Project/ZAP 1.1.0&lt;br /&gt;
&lt;br /&gt;
| release_1 = ZAP 1.0.0&lt;br /&gt;
&lt;br /&gt;
| release_2 = ZAP 1.1.0&lt;br /&gt;
&lt;br /&gt;
| release_3 = ZAP 1.2.0&lt;br /&gt;
&lt;br /&gt;
| release_4 =&lt;br /&gt;
&lt;br /&gt;
| project_about_page = Projects/OWASP_Zed_Attack_Proxy_Project&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Zed_Attack_Proxy_Project&amp;diff=106425</id>
		<title>OWASP Zed Attack Proxy Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Zed_Attack_Proxy_Project&amp;diff=106425"/>
				<updated>2011-03-08T14:43:06Z</updated>
		
		<summary type="html">&lt;p&gt;Axel Neumann: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==== Main  ====&lt;br /&gt;
[[Image:ZAP-ScreenShotAddAlert.png|thumb|300px|right|ZAP Add Alert Screen Shot]]&lt;br /&gt;
[[Image:ZAP-ScreenShotHelp.png|thumb|300px|right|ZAP Help Screen Shot]]&lt;br /&gt;
[[Image:ZAP-ScreenShotHistoryFilter.png|thumb|300px|right|ZAP History Filter Screen Shot]]&lt;br /&gt;
[[Image:ZAP-ScreenShotSearchTab.png|thumb|300px|right|ZAP Search Tab Screen Shot]]&lt;br /&gt;
&lt;br /&gt;
The Zed Attack Proxy (ZAP) is an easy to use integrated penetration testing tool for finding vulnerabilities in web applications. &lt;br /&gt;
&lt;br /&gt;
It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who are new to penetration testing. &lt;br /&gt;
&lt;br /&gt;
ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually.&lt;br /&gt;
&lt;br /&gt;
'''Please take our [http://www.kwiksurveys.com/online-survey.php?surveyID=IIEOLN_d6d2ce53 Online Survey] to let us know what you would like the developers to focus on.'''&lt;br /&gt;
&lt;br /&gt;
[[Image:ZAP-Download.png |&lt;br /&gt;
link=http://code.google.com/p/zaproxy/downloads/list]]&lt;br /&gt;
&lt;br /&gt;
'''The current version of ZAP is [http://code.google.com/p/zaproxy/wiki/HelpReleases1_2_0 1.2.0].'''&lt;br /&gt;
&lt;br /&gt;
'''Some of ZAP's features:'''&lt;br /&gt;
&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsIntercept Intercepting Proxy]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsAscan Automated scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsPscan Passive scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsBruteforce Brute Force scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsPortscan Port scanner]&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpStartConceptsSpider Spider]&lt;br /&gt;
&lt;br /&gt;
'''Some of ZAP's characteristics:'''&lt;br /&gt;
&lt;br /&gt;
* Easy to install (just requires java 1.6)&lt;br /&gt;
* Ease of use a priority&lt;br /&gt;
* [http://code.google.com/p/zaproxy/wiki/HelpIntro Comprehensive help pages]&lt;br /&gt;
* Under active development&lt;br /&gt;
* [http://www.apache.org/licenses/LICENSE-2.0 Open source]&lt;br /&gt;
* Free (no paid for 'Pro' version)&lt;br /&gt;
* Cross platform&lt;br /&gt;
* Involvement actively encouraged &lt;br /&gt;
&lt;br /&gt;
'''It supports the following languages:'''&lt;br /&gt;
&lt;br /&gt;
* English&lt;br /&gt;
* Brazilian Portuguese&lt;br /&gt;
* Chinese&lt;br /&gt;
* French&lt;br /&gt;
* German&lt;br /&gt;
* Greek&lt;br /&gt;
* Japanese&lt;br /&gt;
* Polish&lt;br /&gt;
* Spanish &lt;br /&gt;
&lt;br /&gt;
ZAP is a fork of the well regarded [http://www.parosproxy.org/ Paros Proxy].&lt;br /&gt;
&lt;br /&gt;
==== Roadmap  ====&lt;br /&gt;
&lt;br /&gt;
Details of previous releases can be found [http://code.google.com/p/zaproxy/wiki/HelpReleasesReleases here]&lt;br /&gt;
&lt;br /&gt;
==Release 1.3.0==&lt;br /&gt;
&lt;br /&gt;
The developments planned for this release include:&lt;br /&gt;
* [http://www.beanshell.org/home.html BeanShell] integration&lt;br /&gt;
* Fuzzing (using components from [http://www.owasp.org/index.php/Category:OWASP_JBroFuzz JBroFuzz])&lt;br /&gt;
* APIs to allow other tools to interact with ZAP&lt;br /&gt;
* Full internationalization&lt;br /&gt;
&lt;br /&gt;
==Future Releases==&lt;br /&gt;
&lt;br /&gt;
Future releases are likely to include:&lt;br /&gt;
* Further improvements to the passive and active automated scanners&lt;br /&gt;
* Further improvements the Spider&lt;br /&gt;
&lt;br /&gt;
====Get Involved====&lt;br /&gt;
&lt;br /&gt;
Involvement in the development of ZAP is actively encouraged!&lt;br /&gt;
&lt;br /&gt;
You do not have to be a security expert in order to contribute.&lt;br /&gt;
&lt;br /&gt;
Some of the ways you can help:&lt;br /&gt;
&lt;br /&gt;
==Feature Requests==&lt;br /&gt;
&lt;br /&gt;
Please raise new feature requests as enhancement requests here: http://code.google.com/p/zaproxy/issues/list&lt;br /&gt;
&lt;br /&gt;
If there are existing requests you are also interested in then please 'star' them - that way we can see which features people are most interested in and can prioritize them accordingly. &lt;br /&gt;
&lt;br /&gt;
==Feedback==&lt;br /&gt;
&lt;br /&gt;
Please use the [http://groups.google.com/group/zaproxy-develop zaproxy-develop Google Group] for feadback:&lt;br /&gt;
* What do like?&lt;br /&gt;
* What dont you like?&lt;br /&gt;
* What features could be made easier to use?&lt;br /&gt;
* How could the help pages be improved? &lt;br /&gt;
&lt;br /&gt;
==Log issues==&lt;br /&gt;
&lt;br /&gt;
Have you had a problem using ZAP?&lt;br /&gt;
&lt;br /&gt;
If so and its not already been logged then please [http://code.google.com/p/zaproxy/issues/list report it]&lt;br /&gt;
&lt;br /&gt;
==Localization==&lt;br /&gt;
&lt;br /&gt;
Are you fluent in another language? Can you help translate ZAP into that language?&lt;br /&gt;
&lt;br /&gt;
If so then please get in touch.&lt;br /&gt;
&lt;br /&gt;
==Development==&lt;br /&gt;
&lt;br /&gt;
If you fancy having a go at adding functionality to ZAP then please get in touch via the [http://groups.google.com/group/zaproxy-develop zaproxy-develop Google Group].&lt;br /&gt;
&lt;br /&gt;
Again, you do not have to be a security expect to contribute code - working on ZAP could be great way to learn more about web application security!&lt;br /&gt;
&lt;br /&gt;
If you actively contribute to ZAP then you will be invited to join the project. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!---- ==== Project About ==== &lt;br /&gt;
{{:GPC_Project_Details/OWASP_ZAP | OWASP Project Identification Tab}} ---&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Project About ====&lt;br /&gt;
{{:Projects/OWASP Zed Attack Proxy Project}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_Project|Zed Attack Proxy Project]] [[Category:OWASP_Tool]] [[Category:OWASP_Alpha_Quality_Tool|OWASP Alpha Quality Tool]] [[Category:OWASP_Download]]&lt;/div&gt;</summary>
		<author><name>Axel Neumann</name></author>	</entry>

	</feed>