You can install them via the Marketplace as usual, but we recommend you using the Client Spider and OWASP PTK add-ons instead.
For more details see www.zaproxy.org/blog/2026-09...
#zaproxy #appsec
You can install them via the Marketplace as usual, but we recommend you using the Client Spider and OWASP PTK add-ons instead.
For more details see www.zaproxy.org/blog/2026-09...
#zaproxy #appsec
We’re removing 2 add-ons from the nightly and weekly releases, so if you use those then make sure you read it to understand the implications.
www.zaproxy.org/blog/2026-09...
#zaproxy #appsec
We’re removing 2 add-ons from the nightly and weekly releases, so if you use those then make sure you read it to understand the implications.
www.zaproxy.org/blog/2026-09...
#zaproxy #appsec
#PenTest #WebAppSec #BugBountyTips
#PenTest #WebAppSec #BugBountyTips
www.zaproxy.org/blog/2026-08...
A new optional, opt-in add-on that lets you connect ZAP to an LLM of your choice.
#zaproxy #appsec
www.zaproxy.org/blog/2026-08...
A new optional, opt-in add-on that lets you connect ZAP to an LLM of your choice.
#zaproxy #appsec
#zaproxy #appsec
#zaproxy #appsec
Update your docs!
www.zaproxy.org/docs/nowaspz...
#zaproxy #owasp
Update your docs!
www.zaproxy.org/docs/nowaspz...
#zaproxy #owasp
We now recommend that you use the Client Spider for crawling modern web apps, instead of the AJAX Spider.
More details in the blog post:
www.zaproxy.org/blog/2026-07...
#zaproxy #appsec
We now recommend that you use the Client Spider for crawling modern web apps, instead of the AJAX Spider.
More details in the blog post:
www.zaproxy.org/blog/2026-07...
#zaproxy #appsec
www.zaproxy.org/blog/2026-07...
More PTK integration, lots of Client Spider improvements, and much more..
#zaproxy #appsec
www.zaproxy.org/blog/2026-07...
More PTK integration, lots of Client Spider improvements, and much more..
#zaproxy #appsec
SAST and IAST passive scanning out of the box with the Client Spider, and the active rule is now enabled by default.
www.zaproxy.org/blog/2026-06...
#zaproxy #owaspptk #appsec
SAST and IAST passive scanning out of the box with the Client Spider, and the active rule is now enabled by default.
www.zaproxy.org/blog/2026-06...
#zaproxy #owaspptk #appsec
Update your ZAP add-ons now, and definitely update from older versions of ZAP.
For more details see: www.zaproxy.org/blog/2026-06...
Update your ZAP add-ons now, and definitely update from older versions of ZAP.
For more details see: www.zaproxy.org/blog/2026-06...
Check out the dramatic improvement in the scores vs Google Firing Range!
www.zaproxy.org/blog/2026-06...
#zaproxy #owaspptk #appsec
Check out the dramatic improvement in the scores vs Google Firing Range!
www.zaproxy.org/blog/2026-06...
#zaproxy #owaspptk #appsec
www.zaproxy.org/blog/2026-06...
#zaproxy #appsec
www.zaproxy.org/blog/2026-06...
#zaproxy #appsec
Read all about it on the blog:
www.zaproxy.org/blog/2026-05...
#zaproxy #appsec #mcp
Read all about it on the blog:
www.zaproxy.org/blog/2026-05...
#zaproxy #appsec #mcp
You can now automate OWASP pentestkit using ZAP
www.zaproxy.org/blog/2026-05...
#zaproxy #owasp-ptk #appsec
You can now automate OWASP pentestkit using ZAP
www.zaproxy.org/blog/2026-05...
#zaproxy #owasp-ptk #appsec
www.zaproxy.org/blog/2026-04...
Learn how ZAP can help you make your vibe coded projects more secure.
#zaproxy #vibecoding #appsec
www.zaproxy.org/blog/2026-04...
Learn how ZAP can help you make your vibe coded projects more secure.
#zaproxy #vibecoding #appsec
Learn how to integrate ZAP with KRO in a Kubernetes cluster to scan the security of each new deployment.
℅ Trevor Mountney
#zaproxy #kubernetes #appsec
Learn how to integrate ZAP with KRO in a Kubernetes cluster to scan the security of each new deployment.
℅ Trevor Mountney
#zaproxy #kubernetes #appsec
www.zaproxy.org/blog/2026-04...
ZAP was started 9.5 MILLION times .. and we announced significant collaborations with other open source projects
#zaproxy #appsec
www.zaproxy.org/blog/2026-04...
ZAP was started 9.5 MILLION times .. and we announced significant collaborations with other open source projects
#zaproxy #appsec
www.zaproxy.org/blog/2026-04...
OWASP PTK massively increases ZAP’s browser side testing capabilities .. and automation is up next!
Many thanks to Denis Podgurskii for this great integration.
#zaproxy #owasp #appsec
www.zaproxy.org/blog/2026-04...
OWASP PTK massively increases ZAP’s browser side testing capabilities .. and automation is up next!
Many thanks to Denis Podgurskii for this great integration.
#zaproxy #owasp #appsec
This post describes an approach that uses static analysis findings to guide ZAP’s active scans toward the most relevant endpoints. The result is a faster scanning mode suited for CI/CD pipelines.
Thanks to the Seqra Team!
#zaproxy #appsec
This post describes an approach that uses static analysis findings to guide ZAP’s active scans toward the most relevant endpoints. The result is a faster scanning mode suited for CI/CD pipelines.
Thanks to the Seqra Team!
#zaproxy #appsec
www.zaproxy.org/blog/2026-03...
Thanks to Milton Smith
#zaproxy #deepviolet #appsec
www.zaproxy.org/blog/2026-03...
Thanks to Milton Smith
#zaproxy #deepviolet #appsec
You’ve got it!
www.zaproxy.org/blog/2026-02...
#zaproxy #appsec
You’ve got it!
www.zaproxy.org/blog/2026-02...
#zaproxy #appsec
www.zaproxy.org/blog/2026-02...
#zaproxy #appsec #cyberchef
www.zaproxy.org/blog/2026-02...
#zaproxy #appsec #cyberchef
www.zaproxy.org/blog/2026-02...
#zaproxy #appsec #graphql
www.zaproxy.org/blog/2026-02...
#zaproxy #appsec #graphql