Vulnerability scanning tools: Difference between revisions

Jump to navigation Jump to search
m
No edit summary
Line 24: Line 24:
* 填寫個資申請: 不用
* 填寫個資申請: 不用


[https://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project OWASP Zed Attack Proxy Project] 掃描報告內容包含 Cross-site scripting (XSS), SQL Injection 等部分  OWASP 項目。報告內容有標示漏洞[https://github.com/zaproxy/zap-core-help/wiki/HelpStartConceptsAlerts 嚴重程度]。
[https://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project OWASP Zed Attack Proxy Project] (ZAP) v. 2.7.0 掃描報告內容包含 Cross-site scripting (XSS), SQL Injection 等部分  OWASP 項目。報告內容有標示漏洞[https://github.com/zaproxy/zap-core-help/wiki/HelpStartConceptsAlerts 嚴重程度]。
* 公司/維護者: [https://www.owasp.org/index.php/Main_Page OWASP]
* 公司/維護者: [https://www.owasp.org/index.php/Main_Page OWASP]
* 作業系統: {{Win}}, {{Linux}} & {{Mac}}
* 作業系統: {{Win}}, {{Linux}} & {{Mac}}
* 授權: [https://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project Apache 2 License]
* 授權: [https://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project Apache 2 License]
* 試用版限制:  
* 試用版限制:  
* 檔案掃毒: VirusTotal 掃描結果 [https://www.virustotal.com/zh-tw/file/56f99b77c57cdb1e84a9404b589c1d443d52877ee456c02cc7eae25105c18ae5/analysis/ Mac 版] ok, 其他版有問題[https://www.virustotal.com/zh-tw/file/4ac72657e88733a77d5686274a72dd62ce35fb196faa7f5775ee998277aa1564/analysis/][https://www.virustotal.com/zh-tw/file/c4ee3d515f517290f4f420e50e6056bbefce49395fb955ffca4e9b6bf5aa7072/analysis/][https://www.virustotal.com/zh-tw/file/6237f645d618cf2b2948e7befaa1274916f5da703f38169bb39f07ef21c0a3ae/analysis/]
* 檔案掃毒: VirusTotal 掃描結果 [https://groups.google.com/forum/#!topic/zaproxy-develop/GT0_k6PkqjI Win 版] ok
* 掃描對象:  
* 掃描對象:  
* 掃描報告內容: 內容包含 X-Frame-Options header not set, Cross-Domain javascript source file inclusion, Cross-site scripting (XSS), SQL Injection, X-content-type-options header missing
* 掃描報告內容: 內容包含 X-Frame-Options header not set, Cross-Domain javascript source file inclusion, Cross-site scripting (XSS), SQL Injection, X-content-type-options header missing

Navigation menu