New York State Department of Labor
Coursera logo
Log In
Coursera
New York State Department of Labor
Coursera Project Network
Web Application Security Testing with OWASP ZAP
  • About
  • Outcomes
  • Project details
  • Testimonials
  • Reviews
  • Recommendations
  1. Computer Science
  2. Computer Security and Networks
Coursera Project Network

Web Application Security Testing with OWASP ZAP

Alex Carraway

Instructor: Alex Carraway

Access provided by New York State Department of Labor

9,063 already enrolled

Guided Project
Learn, practice, and apply job-ready skills with expert guidance
4.3

(286 reviews)

Intermediate level

Recommended experience

Recommended experience

Intermediate level

Mid-level experience with web application security, and a fundamental knowledge of web application attack types and terminology is recommended.

1.5 hours
Learn at your own pace
Hands-on learning
Learn more

Guided Project
Learn, practice, and apply job-ready skills with expert guidance
4.3

(286 reviews)

Intermediate level

Recommended experience

Recommended experience

Intermediate level

Mid-level experience with web application security, and a fundamental knowledge of web application attack types and terminology is recommended.

1.5 hours
Learn at your own pace
Hands-on learning
Learn more
  • About
  • Outcomes
  • Project details
  • Testimonials
  • Reviews
  • Recommendations

What you'll learn

  • Scan websites for vulnerabilities

  • Setup and use OWASP ZAP Proxy

  • Use a dictionary list to find files and folders and spider crawl to find links and URLs

Skills you'll practice

  • Security Testing
  • Vulnerability Assessments
  • Application Security
  • Penetration Testing
  • Vulnerability Scanning
  • Open Web Application Security Project (OWASP)
  • Proxy Servers
  • Web Scraping
  • Web Applications
  • Vulnerability Management

Details to know

Shareable certificate

Add to your LinkedIn profile

Taught in English
No downloads or installation required

Only available on desktop

See how employees at top companies are mastering in-demand skills

Learn more about Coursera for Business
 logos of Petrobras, TATA, Danone, Capgemini, P&G and L'Oreal

Learn, practice, and apply job-ready skills in less than 2 hours

  • Receive training from industry experts
  • Gain hands-on experience solving real-world job tasks
  • Build confidence using the latest tools and technologies

About this Guided Project

By the end of this project, you will learn the fundamentals of how to use OWASP Zed Attack Proxy (ZAP). This tool greatly aids security professionals and penetration testers to discover vulnerabilities within web applications. You will learn how to perform a basic web app vulnerability scan, analyze the results, and generate a report of those results. This course includes steps on how to configure the browser proxy to passively scan web requests and responses by simply exploring websites. This course will also include how to use dictionary lists to find files and folders on a web server, and how to spider crawl websites to find all the links and URLs. Finally, the end of the course gives a brief overview of how to intercept, view, modify, and forward web requests that occur between the browser and web application.

Note: This course works best for learners who are based in the North America region. We’re currently working on providing the same experience in other regions.

Learn step-by-step

In a video that plays in a split-screen with your work area, your instructor will walk you through these steps:

  1. •

    Introduction and Overview of OWASP ZAP (2 min)

  2. •

    OWASP ZAP Layout and First Scan (4 min)

  3. •

    Analyzing the OWASP ZAP Scan Results and Generating a Report (4 min)

  4. •

    Setting up FoxyProxy in Firefox to use OWASP ZAP as a Proxy (7 min)

  5. •

    Finding Files and Folders Using a Dictionary List within OWASP ZAP (4 min)

  6. •

    Use OWASP ZAP to Spider Crawl a website to find URLs and Links (4 min)

  7. •

    Use OWASP to View and Alter Requests (8 min)

Recommended experience

Mid-level experience with web application security, and a fundamental knowledge of web application attack types and terminology is recommended.

7 project images

Instructor

Instructor ratings

Instructor ratings

We asked all learners to give feedback on our instructors based on the quality of their teaching style.

3.9 (20 ratings)
Alex Carraway
Alex Carraway
Coursera Project Network
1 Course•9,063 learners

Offered by

Coursera Project Network

Offered by

Coursera Project Network

The Coursera Project Network is a select group of instructors who have demonstrated expertise in specific tools or skills through their industry experience or academic backgrounds in the topics of their projects. If you're interested in becoming a project instructor and creating Guided Projects to help millions of learners around the world, please apply today at teach.coursera.org.

How you'll learn

  • Skill-based, hands-on learning

    Practice new skills by completing job-related tasks.

  • Expert guidance

    Follow along with pre-recorded videos from experts using a unique side-by-side interface.

  • No downloads or installation required

    Access the tools and resources you need in a pre-configured cloud workspace.

  • Available only on desktop

    This Guided Project is designed for laptops or desktop computers with a reliable Internet connection, not mobile devices.

Why people choose Coursera for their career

Felipe M.
Learner since 2018
"To be able to take courses at my own pace and rhythm has been an amazing experience. I can learn whenever it fits my schedule and mood."
Jennifer J.
Learner since 2020
"I directly applied the concepts and skills I learned from my courses to an exciting new project at work."
Larry W.
Learner since 2021
"When I need courses on topics that my university doesn't offer, Coursera is one of the best places to go."
Chaitanya A.
"Learning isn't just about being better at your job: it's so much more than that. Coursera allows me to learn without limits."

Learner reviews

4.3

286 reviews

  • 5 stars

    54.54%

  • 4 stars

    26.92%

  • 3 stars

    11.88%

  • 2 stars

    2.79%

  • 1 star

    3.84%

Showing 3 of 286

E
EI
5

Reviewed on May 13, 2022

Explore me more to acquire entirely different knowledge of what I thought I know

J
JK
4

Reviewed on Feb 27, 2022

I​t is a very good lecture for beginner!! I highly recommend this course.

H
H
5

Reviewed on Jul 14, 2020

The information is very helpful. I got basic knowledge to continue learning OWASP ZAP.

View more reviews

You might also like

  • P

    Packt

    Hands-On Web App Pentesting

    Course

  • M

    Microsoft

    Web Application Security

    Course

  • C

    Codio

    Software Security for Web Applications

    Course

  • P

    Packt

    Software Security Testing

    Course

Coursera Plus

Open new doors with Coursera Plus

Unlimited access to 10,000+ world-class courses, hands-on projects, and job-ready certificate programs - all included in your subscription

Learn more

Advance your career with an online degree

Earn a degree from world-class universities - 100% online

Explore degrees

Join over 3,400 global companies that choose Coursera for Business

Upskill your employees to excel in the digital economy

Learn more

Coursera Footer

Technical Skills

  • ChatGPT
  • Coding
  • Computer Science
  • Cybersecurity
  • DevOps
  • Ethical Hacking
  • Generative AI
  • Java Programming
  • Python
  • Web Development

Analytical Skills

  • Artificial Intelligence
  • Big Data
  • Business Analysis
  • Data Analytics
  • Data Science
  • Financial Modeling
  • Machine Learning
  • Microsoft Excel
  • Microsoft Power BI
  • SQL

Business Skills

  • Accounting
  • Digital Marketing
  • E-commerce
  • Finance
  • Google
  • Graphic Design
  • IBM
  • Marketing
  • Project Management
  • Social Media Marketing

Career Resources

  • Essential IT Certifications
  • High-Income Skills to Learn
  • How to Get a PMP Certification
  • How to Learn Artificial Intelligence
  • Popular Cybersecurity Certifications
  • Popular Data Analytics Certifications
  • What Does a Data Analyst Do?
  • Career Development Resources
  • Career Aptitude Test
  • Share your Coursera Learning Story

Coursera

  • About
  • What We Offer
  • Leadership
  • Careers
  • Catalog
  • Coursera Plus
  • Professional Certificates
  • MasterTrack® Certificates
  • Degrees
  • For Enterprise
  • For Government
  • For Campus
  • Become a Partner
  • Social Impact
  • Free Courses
  • ECTS Credit Recommendations

Community

  • Learners
  • Partners
  • Beta Testers
  • Blog
  • The Coursera Podcast
  • Tech Blog
  • Teaching Center

More

  • Press
  • Investors
  • Terms
  • Privacy
  • Help
  • Accessibility
  • Contact
  • Articles
  • Directory
  • Affiliates
  • Modern Slavery Statement
  • Manage Cookie Preferences
Learn Anywhere
Download on the App Store
Get it on Google Play
Logo of Certified B Corporation
© 2025 Coursera Inc. All rights reserved.
  • Coursera Facebook
  • Coursera Linkedin
  • Coursera Twitter
  • Coursera YouTube
  • Coursera Instagram
  • Coursera TikTok
Coursera

Welcome back

New to Coursera?

Having trouble logging in? Learner help center