Remove secure-continuous-integration-part-1-owasp-zap-tutorial
article thumbnail

How to make your web application more secure by using Interactive Application Security Testing (IAST) – PART 3 of Application Security Testing series

Xebia

Introduction Welcome to part three of the blog series about Application Security Testing. In part one of this series, we looked at Static Application Security Testing (SAST) and in part two at Dynamic Application Security Testing (DAST). First a brief explanation is given about IAST.

article thumbnail

Secure Continuous Integration Part 1: OWASP ZAP Tutorial

Gorilla Logic

If you are reading this OWASP ZAP tutorial, it is because you, like me, are passionate about security and also have a deep love for the overall software development life cycle. Well, you can start in your design or planning session, but my recommendation is to start in the continuous integration process.

article thumbnail

Secure Continuous Integration Part 2: A ZAP and Docker Tutorial

Gorilla Logic

In the first blog post in this series, we covered how to set up our Selenium tests with OWASP ZAP within our local environment as a way of including security vulnerability assessment in our continuous integration process. The very first step within this tutorial is to install Docker. zap2docker-live.