[fusion_builder_container hundred_percent=”no” equal_height_columns=”no” menu_anchor=”” hide_on_mobile=”small-visibility,medium-visibility,large-visibility” class=”” id=”” background_color=”” background_image=”” background_position=”center center” background_repeat=”no-repeat” fade=”no” background_parallax=”none” parallax_speed=”0.3″ video_mp4=”” video_webm=”” video_ogv=”” video_url=”” video_aspect_ratio=”16:9″ video_loop=”yes” video_mute=”yes” overlay_color=”” video_preview_image=”” border_size=”” border_color=”” border_style=”solid” padding_top=”” padding_bottom=”” padding_left=”” padding_right=””][fusion_builder_row][fusion_builder_column type=”1_1″ layout=”1_1″ background_position=”left top” background_color=”” border_size=”” border_color=”” border_style=”solid” border_position=”all” spacing=”yes” background_image=”” background_repeat=”no-repeat” padding_top=”” padding_right=”” padding_bottom=”” padding_left=”” margin_top=”0px” margin_bottom=”0px” class=”” id=”” animation_type=”” animation_speed=”0.3″ animation_direction=”left” hide_on_mobile=”small-visibility,medium-visibility,large-visibility” center_content=”no” last=”no” min_height=”” hover_type=”none” link=””][fusion_text]Combine Selenium and OWASP’s Xelenium project or Zed Attack Proxy (ZAP) in order to perform easy to use integrated penetration testing for finding vulnerabilities in web applications. The Xelenium project and Zed Attack Proxy (ZAP) are distributed through the Open Web Application Security Project (OWASP)  which is a 501(c)(3) worldwide not-for-profit charitable organization focused on improving the security of software.

SonarQube’s OWASP results

owasp

 Some of OWASP’s functionality:

 

logo-OWASP

Xelenium Project: Xelenium is an automation testing tool that can be used to identify the security vulnerabilities present in the web application. Xelenium uses ‘Selenium – Webdriver’ as its engine and has been developed using Java swing.

The Zed Attack Procy (ZAP): is an easy to use integrated penetration testing tool for finding vulnerabilities in web applications.
It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who are new to penetration testing. ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually.[/fusion_text][fusion_content_boxes layout=”icon-on-top” columns=”1″ title_size=”” title_color=”” body_color=”” backgroundcolor=”” icon=”fa-trophy” iconflip=”” iconrotate=”” iconspin=”no” iconcolor=”#ffffff” icon_circle=”” icon_circle_radius=”” circlecolor=”#8bc34a” circlebordersize=”0″ circlebordercolor=”” outercirclebordersize=”” outercirclebordercolor=”” icon_size=”35″ icon_hover_type=”” hover_accent_color=”” image=”” image_width=”” image_height=”” link_type=”” link_area=”” link_target=”” icon_align=”left” animation_type=”” animation_delay=”” animation_offset=”” animation_direction=”left” animation_speed=”0.3″ margin_top=”” margin_bottom=”” hide_on_mobile=”small-visibility,medium-visibility,large-visibility” class=”” id=””][fusion_content_box title=”Top 5″ backgroundcolor=”#efefef” icon=”fa-trophy” iconflip=”” iconrotate=”” iconspin=”” iconcolor=”” circlecolor=”” circlebordersize=”” circlebordercolor=”” outercirclebordersize=”” outercirclebordercolor=”” image=”” image_width=”35″ image_height=”35″ link=”” linktext=”Read More” link_target=”” animation_type=”” animation_direction=”left” animation_speed=”0.3″ animation_offset=””]

Security Penetration

Zed Attack Proxy
Metasploit
W3af
NetSparker
Nessus[/fusion_content_box][/fusion_content_boxes][/fusion_builder_column][/fusion_builder_row][/fusion_builder_container]

X