ZA Proxy: Difference between revisions

From Chorke Wiki
Jump to navigation Jump to search
Line 72: Line 72:
| valign="top" |
| valign="top" |
* [https://snapcraft.io/zaproxy ZAP » <code>sudo snap install zaproxy --classic</code>]
* [https://snapcraft.io/zaproxy ZAP » <code>sudo snap install zaproxy --classic</code>]
* [[JMeter]]


| valign="top" |
| valign="top" |
Line 81: Line 80:
|-
|-
| valign="top" |
| valign="top" |
* [[JMeter]]
* [[Wrk]]


| valign="top" |
| valign="top" |

Revision as of 21:31, 5 January 2024

Firstly It's needed to install ZAP (ZA Proxy) using sudo snap install zaproxy --classic then need to configure Proxy Server and generate Certificate as in Options section. After that Certificate need to import in Firefox browser. Then Proxy SwitchyOmega Extension needed to install and configure AutoProxy. Then any site can be configure for Pen Testing.

Options

OWASP ZAP » Options » Local Proxies                   » Go to New Screen
OWASP ZAP » Options » Dynamic SSL  Certificates       » Go to New Screen  » Save
OWASP ZAP » Firefox » Settings   » Certificates       » View Certificates » Import
OWASP ZAP » Firefox » Settings   » Network Settings   » Proxy
OWASP ZAP » Firefox » Extensions » Proxy SwitchyOmega » Auto Switch

Shortcuts

───────────────────────────────────────────────
Ctrl + Alt   + D   » Options
Ctrl + J           » Import WSDL From Web
Ctrl + I           » Import a File From URLs
───────────────────────────────────────────────
Ctrl + Shift + I   » Import WSDL From System



Knowledge

sudo ss -tulwn | grep LISTEN
sudo ss -tulpn | grep LISTEN | grep 8080
sudo ss -tulpn | grep LISTEN | grep sshd
sudo ss -tulpn | grep LISTEN | grep minio

References