@EFPFproject using Apache APISIX as API Security Gateway, Thanks for contributions from our PMC member @sshniro#Apache#API#security https://t.co/RGiPKuN3ap
The first 3 parts of @psiinon's @AllDayDevOps ZAP Automation and Authentication workshop are now available on https://t.co/FjyoOvNZtU - more will be coming soon
Woohoo! Congrats to @owasp@zaproxy for getting a live 🗣️-out as ⚡⚡⚡ "the most popular DAST tool" ⚡⚡⚡ on @GitHub's #GitHubSatellite in the "Stopping vulnerabilities at the source" session by @greybaker!
🎉 My GitHub Sponsors account busted $70k/yr the other day.
I kinda can't believe it.
I think this open-source sustainability thing is gonna to work out for me.
So grateful to everyone who's sponsored ❤️, and the GH Sponsors team for all their hard work ❤️ cc @devonzuegel
@sashank_dara@zaproxy@owasp@github Baseline scan provides hooks to do the authentication
https://t.co/2u7Zv0u96H
You can specify the hooks via using the cmd_options parameter in the baseline action
@sashank_dara@zaproxy@owasp@github Thanks for bringing this up, I assume we can put a more informative error message. 🙂
You can ignore such alerts by using the rules file.
https://t.co/BDDwoD8T1V
@sashank_dara@zaproxy@owasp@github Hi @sashank_dara , it's how the baseline scan works. If it finds any alerts the docker will throw an error. Thereafter the baseline action will analyze and post the results.
https://t.co/0OZHO3E9Og
You can see the same behavior in the linked issue.