Integrate ZAP in Bamboo Continuous Integration

914 views
Skip to first unread message

Mufaddal Manasawala

unread,
May 4, 2016, 11:50:43 PM5/4/16
to OWASP ZAP User Group

I have been going through ZAP since past couple of days, it is indeed a very good tool to check vulnerabilities in web applications.

I have manually tested my web application using the ZAP GUI and ZAP attack option. I need to integrate ZAP in our Bamboo Continuous Integration process. Can anyone please help me out here, any articles, demos or videos will be helpful. I am new to build integration and testing. 

What are the steps of doing this?

Do any test scripts are required?

b lakshmi

unread,
Apr 23, 2017, 2:10:49 PM4/23/17
to OWASP ZAP User Group
Hi..We are also looking for the same solution.

Were you able to perform this? If so, kindly share your approach.

thc...@gmail.com

unread,
Apr 25, 2017, 4:14:45 AM4/25/17
to zaprox...@googlegroups.com
Hi.

There's an issue to add support for Bamboo (not that it helps much at
this point). [1]


[1] https://github.com/zaproxy/zaproxy/issues/3020

Best regards.

lakshmi

unread,
Apr 25, 2017, 7:25:39 AM4/25/17
to OWASP ZAP User Group
Thanks for the update. However able to spider and scan the target url using python script and create a bamboo task to connect to EC2 instance>run the script. 

thc...@gmail.com

unread,
Apr 25, 2017, 7:38:38 AM4/25/17
to zaprox...@googlegroups.com
OK. Thanks for the info.

Best regards.

Saurabh Seth

unread,
Dec 19, 2017, 6:28:42 PM12/19/17
to OWASP ZAP User Group
Can you share how the script looks like ?

Thanks
Reply all
Reply to author
Forward
0 new messages