<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>OWASP on Ariel&#39;s Blog</title>
    <link>/tags/owasp/</link>
    <description>Recent content in OWASP on Ariel&#39;s Blog</description>
    <generator>Hugo</generator>
    <language>en</language>
    <lastBuildDate>Wed, 29 Apr 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="/tags/owasp/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Running ZAP Against Juice Shop - Here Is What It Found</title>
      <link>/posts/running-zap-against-juice-shop---here-is-what-it-found/</link>
      <pubDate>Wed, 29 Apr 2026 00:00:00 +0000</pubDate>
      <guid>/posts/running-zap-against-juice-shop---here-is-what-it-found/</guid>
      <description>&lt;p&gt;It has been a while since I posted something.  I have been pretty busy with my day to day. I am re working my lab and some other projects.  I was thinking on what to post about and since in my last post I deployed a small application security lab on Kubernetes. I thought it would be cool to run one of the tools I had deployed. I chose OWASP ZAP. ZAP is a DAST tool which means it tests the application while it is actually running. Think of it as a robot that pokes at your app from the outside looking for weaknesses.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
