Regarding Automating Modsec rules

23 views
Skip to first unread message

Ray Blitz

unread,
Jun 15, 2021, 9:26:26 AM6/15/21
to OWASP ZAP Scripts
Hello, 
I am currently doing an study on automating ModSec Rules is there any script/api/tool that can be used to Convert my zap report file to modsec rules.
I had used zap2modsec.pl perl script but it does only convert 6 vulnerabilities to rules.
So is there any other way to automate other vulnerabilities to rules.

kingthorin+owaspzap

unread,
Jun 15, 2021, 9:29:52 AM6/15/21
to OWASP ZAP Scripts
I'm not aware of any such script.

It also doesn't address the issue, just because you block the specific things that ZAP tries doesn't mean you're no longer vulnerable to the types of issues that Zap identifies.
Reply all
Reply to author
Forward
0 new messages