Its not going to be trivial, but its quite self contained so could be an ideal introduction to ZAP development :)
Cheers,
Simon
Madhu Akula
unread,
May 4, 2017, 5:58:43 AM5/4/17
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to OWASP ZAP Developer Group
Hey psiinon,
I am really excited to contribute. But I don't work on development, I am interested in contributing infrastructure part. Where I can contribute in setting up the NoSQL docker containers for testing environment and related things.
Not only for this if any other development going I can support for infrastructure related things.
Looking forward
psiinon
unread,
May 4, 2017, 6:10:31 AM5/4/17
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
The other thing that would be _really_ useful for people developing scan rules is some documentation around specific vulnerabilities. This doesnt have to be too detailed, just a list of URLs + the associated vulnerabilities would be a great start. That way people can start working on new scan rules without having to spend ages hunting down good examples :)
Many thanks,
Simon
Madhu Akula
unread,
May 4, 2017, 6:17:47 AM5/4/17
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to OWASP ZAP Developer Group
I follow that, I can see DSVW from Appsecco which I created.
Thanks for information, I will keep update the repository with all available vulnerabilities and documentation.