ZA Proxy: Difference between revisions

From Chorke Wiki
Jump to navigation Jump to search
Line 64: Line 64:
* [https://addons.mozilla.org/en-US/firefox/addon/switchyomega/ ZAP » Proxy SwitchyOmega]
* [https://addons.mozilla.org/en-US/firefox/addon/switchyomega/ ZAP » Proxy SwitchyOmega]
* [https://www.zaproxy.org/ ZAP » Zed Attack Proxy]
* [https://www.zaproxy.org/ ZAP » Zed Attack Proxy]
* [https://www.zaproxy.org/getting-started/ ZAP » Getting Started]
* [https://github.com/zaproxy/zaproxy ZAP » GitHub]
* [https://github.com/zaproxy/zaproxy ZAP » GitHub]



Revision as of 05:10, 10 April 2023

Firstly It's needed to install ZAP (ZA Proxy) using sudo snap install zaproxy --classic then need to configure Proxy Server and generate Certificate as in Options section. After that Certificate need to import in Firefox browser. Then Proxy SwitchyOmega Extension needed to install and configure AutoProxy. Then any site can be configure for Pen Testing.

Options

OWASP ZAP » Options » Local Proxies
OWASP ZAP » Options » Dynamic SSL  Certificates       » Go to New Screen  » Save
OWASP ZAP » Firefox » Settings   » Certificates       » View Certificates » Import
OWASP ZAP » Firefox » Settings   » Network Settings   » Proxy
OWASP ZAP » Firefox » Extensions » Proxy SwitchyOmega » Auto Switch

Shortcuts

───────────────────────────────────────────────
Ctrl + Alt   + D   » Options
Ctrl + J           » Import WSDL From Web
Ctrl + I           » Import a File From URLs
───────────────────────────────────────────────
Ctrl + Shift + I   » Import WSDL From System



Knowledge

sudo ss -tulwn | grep LISTEN
sudo ss -tulpn | grep LISTEN | grep 8080
sudo ss -tulpn | grep LISTEN | grep sshd
sudo ss -tulpn | grep LISTEN | grep minio

References