Authentication Test Results
+| Site | +URL | +Type | +Auth | +Username | +Password | +Session Mgmt | +Verification | +Note | +
|---|---|---|---|---|---|---|---|---|
| aspnet | + +http://aspnet.testsparker.com | + +stdbba | +✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ + |
| bluesky | + +https://bsky.app | + +stdbba | +❌ Failed | ✓ Passed | ✓ Passed | ✓ Passed | ❌ Failed |
+ BBA is failing verification detection. | +
| ctflearn | + +https://ctflearn.com | + +stdbba | +❌ Failed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ BBA is passing all of the parts but failing overall. | +
| deftheweb | + +https://defendtheweb.net | + +stdbba | +✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ BBA is failing verification detection. | +
| ginnjuice | + +https://ginandjuice.shop | + +stdbba | +✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ + |
| hackyourself | + +https://hack-yourself-first.com | + +stdbba | +❌ Failed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ + |
| infosecex | + +https://infosec.exchange | + +stdbba | +✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ BBA is passing all of the parts but failing overall. | +
| insta | + +https://www.instagram.com | + +stdbba | +❌ Failed | ✓ Passed | ✓ Passed | ✓ Passed | ❌ Failed |
+ BBA is failing due to popups. | +
| https://www.linkedin.com | + +stdbba | +✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ + | |
| mozbugz | + +https://bugzilla.mozilla.org | + +stdbba | +✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ + |
| phpspark | + +http://php.testsparker.com | + +stdbba | +✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ + |
| https://www.reddit.com | + +stdbba | +❌ Failed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ + | |
| spotify | + +https://accounts.spotify.com | + +stdbba | +❌ Failed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ + |
| testasp | + +http://testasp.vulnweb.com | + +stdbba | +✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ + |
| testfire | + +http://testfire.net | + +bbaplus | +❌ Failed | ✓ Passed | ✓ Passed | ✓ Passed | ❌ Failed |
+ CSA is failing due to use of autodetect. | +
| testfire | + +http://testfire.net | + +csa | +❌ Failed | — N/A | — N/A | ❌ Failed | ❌ Failed |
+ CSA is failing due to use of autodetect. | +
| testfire | + +http://testfire.net | + +stdbba | +✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ CSA is failing due to use of autodetect. | +
| testhtml5 | + +http://testhtml5.vulnweb.com | + +stdbba | +❌ Failed | ✓ Passed | ✓ Passed | ❌ Failed | ❌ Failed |
+ + |
| testphp | + +http://testphp.vulnweb.com | + +stdbba | +✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ + |
| webappsec | + +http://zero.webappsecurity.com | + +stdbba | +❌ Failed | ✓ Passed | ✓ Passed | ❌ Failed | ❌ Failed |
+ + |
| wikipedia | + +https://en.wikipedia.org | + +stdbba | +✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed | ✓ Passed |
+ BBA is failing verification detection. | +
| zoom | + +https://zoom.us | + +stdbba | +❌ Failed | ✓ Passed | ✓ Passed | ✓ Passed | ❌ Failed |
+ BBA is failing due to popups. | +
Configuration
+| Config | +Details | +
|---|---|
| Frequency | +On-demand | +
| Scripts | +https://github.com/zapbot/zap-mgmt-scripts/blob/master/scans/auth/ | +
| Action | +https://github.com/zapbot/zap-mgmt-scripts/blob/master/.github/workflows/auth-tests.yml | +
Settings
+The latest Nightly ZAP Docker image is run with the default settings against these apps with no exceptions.
+