This is open source software that can be used for security research and Web Application hardening.
The process in this video is usually done during the test phase of the software development life cycle where code changes can still be made quickly.
Two key rules if you do this:
1. Never run a test against an application without permission; it will hurt performance on a production system.
2. If this is done for a client, always follow the disclosure policies outlined in the executed contract.
Notes:
This video is for research purposes only.
This test was done in a lab environment.
URL: https://www.zaproxy.org/
Web Testing Framework:
https://owasp.org/www-project-web-sec...