Penetration Testing with OWASP ZAP, Part 3 of 5: Attack Types
interactive

Penetration Testing with OWASP ZAP, Part 3 of 5: Attack Types

LearnNow Online
Updated Oct 24, 2025

What you'll learn

  • Execute automated attacks using OWASP ZAP
  • Perform spidering on web applications
  • Conduct fuzzing to identify vulnerabilities
  • Implement active scanning attacks effectively
Course Description

Course description

OWASP ZAP is an open-source web application security scanner. This course covers Automated Attacks in under 5 Minutes, Spidering and Fuzzing the Target as well as Active Scanning Attacks.

Each LearnNowOnline training course is made up of Modules (typically an hour in length). Within each module there are Topics (typically 15-30 minutes each) and Subtopics (typically 2-5 minutes each). There is a Post Exam for each Module that must be passed with a score of 70% or higher to successfully and fully complete the course.


Prerequisites

none


Meet the expert

Atul Tiwari

Atul has been involved in information security,  IT auditing, and  penetration testing web apps in the field of information security training for over 8 years.

 

Video Runtime

88 Minutes

Time to complete

108 Minutes

 

Course Outline

Attacks and Spidering

Automated Attack in Under 5 Minutes (18:12)

  • Introduction (00:08)
  • Automated Attack Under 5 Minutes (13:10)
  • Active Scan Results (04:45)
  • Summary (00:08)

Spidering the Target (24:28)

  • Introduction (00:08)
  • The Standard Spider (08:32)
  • The AJAX Spider (04:01)
  • Spidering the Target (11:38)
  • Summary (00:08)

Fuzzing the Target (23:46)

  • Introduction (00:08)
  • Fuzzing Targets in Action (16:05)
  • Fuzzer Results (07:24)
  • Summary (00:08)

Active Scanning Attacks (22:27)

  • Introduction (00:08)
  • Active Scanning Attacks (10:09)
  • Parameters (12:01)
  • Summary (00:08)