mirror of https://github.com/1N3/Sn1per.git
Added OWASP ZAP Integration
parent
661e9fe341
commit
8e3691f726
|
|
@ -0,0 +1,16 @@
|
|||
In order to setup OWASP ZAP integration, you will need to have ZAP running on the same host as Sn1per and the http/https proxy listening on port 8081/tcp.
|
||||
|
||||

|
||||
|
||||
In addition, you will need to enable the ZAP API service and disable the API key.
|
||||
|
||||

|
||||
|
||||
The last step is to update your /root/.sniper.conf file and enable the following setting:
|
||||
```
|
||||
ZAP_SCAN="1"
|
||||
```
|
||||
|
||||
After, you can run the ‘webscan’ mode (ie. ```sniper -t 127.0.0.1 -m webscan -w 127.0.0.1```). After the scan completes, all HTML reports will be saved to /usr/share/sniper/loot/workspace/<workspace>/web/zap-report-$TARGET-$DATE.html.
|
||||
|
||||
> 
|
||||
Loading…
Reference in New Issue