Zed Assault Proxy Scripts for locating CVEs and Secrets and techniques.
Constructing
This undertaking makes use of Gradle to construct the ZAP add-on, merely run:
in the primary listing of the undertaking, the add-on will likely be positioned within the listing construct/zapAddOn/bin/
.
Utilization
The best method to make use of this repo in ZAP is so as to add the listing to the scripts listing in ZAP (underneath Choices -> Scripts).
nonetheless, you too can construct the add on and set up it (underneath File -> Load Addon File…).
License
This software program is distributed underneath the MIT License.
Credit
-
The scripts underneath the
lively
listing are largely ported from the wonderful nuclei-templates repository, so enormous shoutout to projectdiscovery and the group. -
secret-finder.js
makes use of regex patterns from the superior gitleaks undertaking. -
takeover-finder.js
makes use of patterns from the superior nuclei-templates repository.
LEGAL NOTICE
THIS SOFTWARE IS PROVIDED FOR EDUCATIONAL USE ONLY! IF YOU ENGAGE IN ANY ILLEGAL ACTIVITY THE AUTHOR DOES NOT TAKE ANY RESPONSIBILITY FOR IT. BY USING THIS SOFTWARE YOU AGREE WITH THESE TERMS.
Get Concerned
Please, ship us pull requests!