An OWASP Zed Attack Proxy (ZAP) add-on to help find reflected parameter vulnerabilities.
- Inspect in scope urls for reflected parameters
- Save requests/responses to table
You can find the latest release (ZAP file) here.
gradle build
Add-on ZAP file will be located at: ./build/zapAddOn/bin
- Open OWASP ZAP
- File
- Load Add-on file
- Select reflect
.zap
file