zaproxy's profile picture. Official announcements (low vol) for ZAP by @Checkmarx - the worlds most popular web app scanner. Free and open source. http://infosec.exchange/@zaproxy

Zed Attack Proxy

@zaproxy

Official announcements (low vol) for ZAP by @Checkmarx - the worlds most popular web app scanner. Free and open source. http://infosec.exchange/@zaproxy

Pinned

Want to learn more about ZAP? The latest tutorial videos are all linked off zaproxy.org/videos/ - we're adding to them all of the time.


📰 In #zaproxy news for today

zaproxy's tweet image. 📰 In #zaproxy news for today

We have just published a new ZAP weekly release, to fix a bug which could cause invalid JSON reports to be generated. If you are using the most recent weekly we recommend you update ASAP.


Sorry, we messed up! A new scan rule triggered the ZAP Check for Updates call even if you used the "silent" mode. For more details see zaproxy.org/blog/2025-10-2…


The ZAP team has forked and will maintain WAVSEP going forwards. This blog post explains why. zaproxy.org/blog/2025-09-0… #zaproxy #appsec #wavsep


ZAP Updates - August 2025: zaproxy.org/blog/2025-09-0… Microsoft Online Login Support, forking wavsep and much, much more! #zaproxy #appsec


All of the translated ZAP help files on the Marketplace have been updated. Thanks to the Crowdin translators for their hard work! crowdin.com/project/zap-he…


We have a new #evangelists channel on the ZAP Slack: zaproxy.org/slack/ For an invite go to zaproxy.org/slack/invite Join up and help spread the word about #zaproxy !


All of the ZAP Docker images in the Software Security Project Docker Hub org have now been deleted. If you were pulling from this org then please switch to the zaproxy org or use GHCR as per zaproxy.org/download/#dock… #zaproxy #appsec


ZAP Updates - July 2025 Authentication improvements, Edge support, timing rule changes, Docker news, and a new scan rule. zaproxy.org/blog/2025-08-0… #zaproxy #appsec


Yesterday there were more than 25K ZAP scans run using old versions of ZAP. These are no longer being maintained. Update your ZAP installs now! #zaproxy #appsec


We will be deleting all of the ZAP Docker images from the Software Security Project Docker Hub within the next 2 weeks. If you are still pulling images from there then please switch to one of the maintained options: zaproxy.org/download/#dock…


There is a new "ZAP is Out of Date" scan rule - learn more about it via this blog post zaproxy.org/blog/2025-07-2… #zaproxy #appsec


We've recently made some requested changes to the naming and implementation of scan rules which used Time Based attacks. @kingthorin_rm has written about it here: zaproxy.org/blog/2025-07-2… #AppSec #WebAppSec #DAST #DevSecOps


#zaproxy users. We are aware that the BOAST service has been down (for a few days now). We have reached out to the maintainer and are waiting to hear back. Sorry for any inconvenience! Keep in mind you can also use public or self hosted Interactsh for OOB testing purposes.


None of the major browsers are currently flagging the latest ZAP downloads as suspicious🎉 Thank you to whoever sorted that out!


Loading...

Something went wrong.


Something went wrong.