| Redefining AppSec Testing with Intelligent Scan Recommendations and Asset Classification |
Detectify |
Apr 24, 2025 |
29 |
- |
| A practitioner’s guide to classifying every asset in your attack surface |
Detectify |
May 13, 2025 |
2932 |
- |
| How our new engine framework helped address a critical vulnerability within the day |
Dan Eidmark & André Schaffer |
Nov 18, 2024 |
1680 |
- |
| EU Regulating InfoSec: How Detectify helps achieving NIS 2 and DORA compliance |
Cecilia Wik |
Jun 03, 2025 |
2754 |
- |
| How Detectify embraces the best of both DAST and ASM |
Detectify |
Feb 10, 2025 |
1104 |
- |
| DNS is the center of the modern attack surface – are you protecting all levels? |
Rickard Carlsson |
Mar 18, 2025 |
1575 |
- |
| Security Update: Publicly Exposed Ingress NGINX Admission |
Detectify |
Mar 26, 2025 |
521 |
- |
| Making security a business value enabler, not a gatekeeper |
Detectify |
Feb 25, 2025 |
1169 |
- |
| Introducing Alfred for fully autonomous AI-built vulnerability assessments |
Detectify |
Mar 10, 2025 |
802 |
- |
| Web cache entanglement – Novel pathways to poisoning |
Detectify |
Oct 27, 2020 |
889 |
- |
| Detectify sees significant increase in detected vulnerabilities powered by its Crowdsource community |
Detectify |
Jan 27, 2022 |
773 |
- |
| Security-focused work routine in 7 steps |
Detectify |
Jul 07, 2016 |
1498 |
- |
| Detectify year in review 2024 |
Detectify |
Dec 18, 2024 |
1108 |
- |
| AppSec has a need for speed and continuous security |
Detectify |
Jun 10, 2021 |
1205 |
- |
| GDPR security from an ethical hacker’s perspective |
- |
Jan 23, 2018 |
62 |
- |
| Ethical hacker shares top tips to protect your attack surface |
Detectify |
Oct 19, 2021 |
1666 |
- |
| Guide to Responsible Disclosure and Bug Bounty – 10 FAQs |
Detectify |
Feb 27, 2018 |
2279 |
- |
| Detectify’s Year in Review 2017 |
Detectify |
Dec 12, 2017 |
651 |
- |
| Newly added security tests, August 10, 2017: WordPress and JPlayer modules |
Detectify |
Aug 10, 2017 |
62 |
- |
| Improvements to the IP page – more flexibility and new methods to interact with data |
Victor Arellano |
Sep 21, 2023 |
532 |
- |
| Detectify’s ISO 27001 certification use case and guide for SaaS companies |
Detectify |
Jan 26, 2021 |
1503 |
- |
| Meet the Hacker: Gerben Janssen van Doorn |
Detectify |
Feb 16, 2018 |
1204 |
- |
| Detectify security updates for 4 April |
Detectify |
Apr 04, 2019 |
334 |
- |
| Team event – Detectify Sailing |
Detectify |
Jul 14, 2015 |
149 |
- |
| Developing an exploitable-payload for File Disclosure in Pulse Secure Connect (CVE-2019-11510) |
Alyssa Herrera |
Sep 19, 2019 |
1937 |
- |
| Significant changes to attack surface overview and many new tests |
Victor Arellano |
Mar 08, 2024 |
461 |
- |
| What is server side request forgery (SSRF)? |
Detectify |
Jan 10, 2019 |
860 |
- |
| An ethical hacker’s perspective on EASM |
Gunnar Andrews |
Jan 04, 2023 |
1104 |
- |
| OWASP Top 10 Vulnerabilities Explained |
Detectify |
May 01, 2016 |
820 |
- |
| A security overview of Content Management Systems |
Detectify |
Dec 04, 2018 |
1190 |
- |
| Product comparison: Detectify vs. Intruder |
Detectify |
Sep 10, 2025 |
200 |
- |
| Q&A with Andreas Larsson, CTO/Lead Developer, Fakturabörsen |
Detectify |
Sep 20, 2016 |
619 |
- |
| Common Nginx misconfigurations that leave your web server open to attack |
Detectify |
Nov 10, 2020 |
1662 |
- |
| 7 most common e-commerce security mistakes |
Detectify |
Nov 17, 2016 |
934 |
- |
| Better attack surface filtering and subdomain discovery |
Victor Arellano |
Jul 08, 2022 |
377 |
- |
| Detectify achieves ISO 27001 Certification |
Detectify |
Jul 14, 2020 |
341 |
- |
| Wake up – You’re vulnerable to mayhem! |
Rickard Carlsson |
Jan 28, 2016 |
640 |
- |
| A general guide to implementing HTTPS |
Detectify |
Nov 28, 2016 |
819 |
- |
| Improvements to boost the attack surface view, ports & more |
Victor Arellano |
Apr 29, 2022 |
583 |
- |
| Newly minted filters, improvements to bulk actions, and SSL assessments |
Victor Arellano |
May 10, 2022 |
456 |
- |
| Detectify security updates for 17 June |
Detectify |
Jun 17, 2020 |
562 |
- |
| Improvements to fingerprinted technologies, IP data, and the attack surface |
Victor Arellano |
Oct 30, 2023 |
412 |
- |
| Detectify Crowdsource October recap & WordPress vulnerabilities galore |
Detectify |
Oct 17, 2017 |
327 |
- |
| Inside the tech that continuously monitors our customers’ attack surface |
Dan Eidmark \u0026 André Schaffer |
Jan 09, 2025 |
1949 |
- |
| OWASP TOP 10: Using components with known vulnerabilities |
Detectify |
Aug 04, 2016 |
1010 |
- |
| Product comparison: Detectify vs. Nessus |
Detectify |
Sep 18, 2025 |
261 |
- |
| Major improvements to integrations |
Victor Arellano |
Jun 29, 2023 |
408 |
- |
| An interview with Anne-Marie Eklund Löwinder |
Detectify |
Jul 18, 2019 |
3279 |
- |
| Detectify security updates for February 8 |
Detectify |
Feb 08, 2021 |
663 |
- |
| Newly Added Security Tests, February 15, 2017: MongoDB |
Detectify |
Feb 15, 2017 |
62 |
- |
| Magento security from a hacker’s perspective |
Detectify |
Oct 11, 2017 |
230 |
- |
| Iframe busters lead to XSS on 2% of all websites |
Detectify |
Oct 04, 2018 |
1137 |
- |
| Test your site for the latest WordPress plugin XSS vulnerabilities |
Detectify |
Sep 20, 2017 |
342 |
- |
| Performance improvements, snappier ports, and spring cleaning |
Victor Arellano |
May 24, 2022 |
432 |
- |
| OWASP TOP 10: Broken Authentication |
Detectify |
May 06, 2016 |
842 |
- |
| How to “winterize” and secure your eCommerce website for the holidays |
Detectify |
Nov 17, 2020 |
1160 |
- |
| Meet the Hacker: Goonjeta Malhotra |
Detectify |
Mar 07, 2022 |
1464 |
- |
| Detectify’s Year in Review 2016 |
Detectify |
Dec 14, 2016 |
1210 |
- |
| Top tips for better security awareness on the job from Detectify Security Champions |
Detectify |
Dec 08, 2020 |
793 |
- |
| Newly added security tests, June 21, 2017: XSS and SQL injection modules |
Detectify |
Jun 21, 2017 |
62 |
- |
| Alerts on policy breaches now available via API |
Victor Arellano |
Jul 03, 2024 |
560 |
- |
| Meet the team: Johanna Ydergård |
Detectify |
Oct 17, 2019 |
1557 |
- |
| Rickard Carlsson on ASW: “Finding vulnerabilities in staging doesn’t matter; what matters is what’s live.” |
Detectify |
Nov 20, 2020 |
3417 |
- |
| Modern application security requires speed, scale, and collaboration |
Rickard Carlsson |
Apr 09, 2021 |
858 |
- |
| Detectify security updates for 29 November |
Detectify |
Nov 29, 2018 |
315 |
- |
| Detectify Teams up with Hackers for Change |
Detectify |
Aug 18, 2021 |
711 |
- |
| Web security trends to watch for in 2020 |
Detectify |
Jan 30, 2020 |
1126 |
- |
| Detectify security updates for 4 October |
Detectify |
Oct 04, 2018 |
483 |
- |
| 3x more subdomain takeovers now discovered |
Victor Arellano |
Oct 06, 2022 |
734 |
- |
| Meet the team: Andrea Palaia – From particle physics at CERN to Detectify data |
Detectify |
Feb 02, 2017 |
900 |
- |
| The role of attack surface management to bolster data breach protection |
Detectify |
May 31, 2022 |
1599 |
- |
| New test added for actively exploited critical CVE-2021-44228 Apache Log4j RCE |
Detectify |
Dec 12, 2021 |
470 |
- |
| Product comparison: Detectify vs. Burp Enterprise |
Detectify |
Sep 26, 2025 |
243 |
- |
| How Detectify handles Zero-Day submissions |
Detectify |
Oct 03, 2019 |
657 |
- |
| jQuery-File-Upload: A tale of three vulnerabilities |
Detectify |
Dec 13, 2018 |
1042 |
- |
| Core Values at Detectify: Turning problems into opportunities |
Detectify |
Aug 25, 2021 |
921 |
- |
| Meet the team: Rickard Carlsson – From elite skier and management consultant to startup CEO |
Detectify |
Jun 07, 2017 |
909 |
- |
| Newly added security tests, September 14, 2017: Selenium Grid |
Detectify |
Sep 14, 2017 |
62 |
- |
| Newly added security tests, February 28, 2017: New WordPress plugin vulnerabilities |
Detectify |
Feb 28, 2017 |
107 |
- |
| How mob programming and sourcing jams activate collaboration at Detectify |
Detectify |
May 28, 2021 |
1034 |
- |
| streaak – my recon techniques from 2019 |
streaak |
Jan 07, 2020 |
2167 |
- |
| Detectify @ DEF CON 2015 |
Detectify |
Aug 24, 2015 |
670 |
- |
| What information does Detectify provide for PCI Compliance Requirement 6? |
Detectify |
Apr 18, 2019 |
1586 |
- |
| Detectify security updates for 13 July |
Detectify |
Jul 13, 2020 |
383 |
- |
| Detectify Security Updates for August 17 |
Detectify |
Aug 17, 2021 |
688 |
- |
| IT Security FAQ 2: What should you think about when installing a new plugin on WordPress? |
Detectify |
Feb 25, 2016 |
270 |
- |
| How to identify a phishing email |
Detectify |
Oct 20, 2016 |
602 |
- |
| Newly added security tests April 5, 2017: Joomla and WordPress vulnerabilities |
Detectify |
Apr 05, 2017 |
62 |
- |
| OWASP TOP 10: Insecure Direct Object Reference |
Detectify |
May 25, 2016 |
736 |
- |
| Detectify’s Frans Rosén #2 on HackRead’s 10 Famous Bug Bounty Hunters of All Time |
Detectify |
Feb 17, 2016 |
111 |
- |
| Meet the team: Johan Edholm – The security enthusiast behind Detectify’s vision |
Detectify |
Apr 07, 2017 |
1146 |
- |
| Introducing Dynamic API Scanning |
Detectify |
Sep 02, 2025 |
745 |
- |
| OWASP TOP 10: Insecure Deserialization |
Detectify |
Mar 21, 2018 |
1047 |
- |
| How we tracked down (what seemed like) a memory leak in one of our Go microservices |
Detectify |
Sep 05, 2019 |
2788 |
- |
| Leading SaaS innovation with collaboration and security transparency |
Detectify |
May 12, 2021 |
774 |
- |
| Here’s how Detectify and Penetration Testing compare |
Charlotte Kerridge |
Jul 25, 2023 |
680 |
- |
| Detectify security updates for 6 September |
Detectify |
Sep 06, 2018 |
468 |
- |
| OWASP Top 10 2017 is here – Injection still #1 |
Detectify |
Nov 23, 2017 |
822 |
- |
| Newly added security tests April 28, 2017: Hubspot and TenderApp |
Detectify |
Apr 28, 2017 |
62 |
- |
| Newly added security tests, July 6, 2017: OpenVPN CRLF injection |
Detectify |
Jul 06, 2017 |
62 |
- |
| Resolving prioritization issues faced by modern AppSec teams with EASM |
Grace Macej |
Mar 17, 2023 |
708 |
- |
| Detectify year in review 2019 |
Detectify |
Dec 17, 2019 |
859 |
- |
| How WordPress plugins leak sensitive information without you noticing |
Sebastian Neef |
Feb 26, 2020 |
2573 |
- |
| What’s the difference between Attack Surface Monitoring and Vulnerability Scanning? |
Detectify |
Oct 21, 2021 |
1392 |
- |
| Vuln of the Month: CVE-2020-10148 SolarWinds Orion Authentication Bypass |
Detectify |
Feb 16, 2021 |
300 |
- |
| IT Security FAQ 5: What is ethical hacking vs malicious hacking? And what is a bug bounty hunter/program? |
Detectify |
Mar 17, 2016 |
203 |
- |
| Discover the latest security vulnerabilities in minutes with Detectify |
Detectify |
Oct 28, 2020 |
595 |
- |
| Karim Rahal: Security Features of Firefox |
Karim Rahal |
Oct 03, 2019 |
1580 |
- |
| Detectify Security Updates May 17 |
Detectify |
May 17, 2021 |
313 |
- |
| How does EASM differ from CAASM and DRPS? |
Hakluke |
Mar 08, 2023 |
1550 |
- |
| Newly added security tests, August 28, 2017: vBulletin and WordPress vulnerabilities |
Detectify |
Aug 28, 2017 |
100 |
- |
| Hiding in plain sight: HTTP request smuggling |
Detectify |
May 28, 2020 |
768 |
- |
| How to reduce your attack surface |
Detectify |
Aug 21, 2020 |
1641 |
- |
| How we got read access on Google’s production servers |
Fredrik Nordberg Almroth \u0026 Mathias Karlsson |
Apr 11, 2014 |
611 |
- |
| Phishing, OWASP, EASM, and hacking WordPress – top themes from Hack Yourself London |
Detectify |
May 04, 2022 |
1713 |
- |
| Research: Thousands of vulnerable Magento web stores exist |
Detectify |
Oct 10, 2017 |
996 |
- |
| View vulnerabilities on the Attack Surface page, new Overview, and update to Attack Surface Custom Policies |
Victor Arellano |
Jul 06, 2023 |
592 |
- |
| Major update to Attack Surface Custom Policies |
Victor Arellano |
Apr 28, 2023 |
478 |
- |
| Fitting automated security throughout the CI/CD pipeline |
Detectify |
May 28, 2019 |
1013 |
- |
| Crowdsource monthly recap – August 2017 breaks new records |
Detectify |
Sep 08, 2017 |
483 |
- |
| New security tests, October 19, 2017: ROCA – vulnerable RSA generation |
Detectify |
Oct 19, 2017 |
384 |
- |
| Improvements to the attack surface overview |
Victor Arellano |
Dec 14, 2023 |
423 |
- |
| Web security podcasts we are currently listening to |
Detectify |
Sep 30, 2018 |
923 |
- |
| Risto Siilasmaa: “We have to assume that the bad guys will get in” |
Detectify |
Mar 28, 2018 |
1361 |
- |
| Detectify security updates for 23 January |
Detectify |
Jan 24, 2019 |
353 |
- |
| Detectify security updates for 15 November |
Detectify |
Nov 15, 2018 |
403 |
- |
| Detectify Raises $10M in follow-on funding |
Detectify |
Sep 29, 2022 |
609 |
- |
| Detectify Security Updates for March 23 |
Detectify |
Mar 23, 2021 |
318 |
- |
| Detectify security updates for 21 March |
Detectify |
Mar 21, 2019 |
275 |
- |
| Recently added crowdsourced vulnerabilities – September 2023 |
Detectify |
Sep 27, 2023 |
249 |
- |
| Detectify Crowdsource FAQs |
Detectify |
Dec 10, 2020 |
704 |
- |
| Detectify Security Updates for 12 April |
Detectify |
Apr 12, 2021 |
381 |
- |
| How to set up Attack Surface Custom Policies |
Victor Arellano |
Oct 18, 2022 |
691 |
- |
| How to get rid of your ‘This site may be hacked’-flag from your website |
Linus Särud |
Feb 19, 2016 |
559 |
- |
| OWASP TOP 10: Missing Function Level Access Control |
Detectify |
Jul 13, 2016 |
1164 |
- |
| Awards to Detectify’s team members |
Detectify |
Mar 13, 2015 |
346 |
- |
| View and tag findings on the new vulnerabilities page to fix them faster |
Detectify |
Dec 17, 2020 |
502 |
- |
| Bug Bounty and automation make a formidable pair together |
Detectify |
Sep 20, 2018 |
724 |
- |
| Meet the Hacker: EdOverflow |
Detectify |
Mar 12, 2019 |
991 |
- |
| Meet the Hacker: Peter Jaric, Software Developer |
Detectify |
Feb 09, 2017 |
565 |
- |
| Newly added security tests March 23, 2017: CVE-2017-5638 and Joomla SQL injections |
Detectify |
Mar 23, 2017 |
100 |
- |
| Common web vulnerabilities every hacker and developer should know |
Detectify |
Jul 28, 2021 |
820 |
- |
| Busting browser fails: What attackers see when they hack your employees’ browser |
David Jacoby |
Jul 18, 2022 |
2465 |
- |
| New WordPress XSS Vulnerability Discovered |
Detectify |
May 17, 2016 |
132 |
- |
| First encounters through the eyes of the Detectify scanner |
Andrea Palaia |
Dec 16, 2015 |
563 |
- |
| Why manual pentesting and automation go hand in hand |
Detectify |
Aug 16, 2017 |
506 |
- |
| Detectify Year in Review 2018 |
Detectify |
Dec 20, 2018 |
1314 |
- |
| OWASP TOP 10 2013: Unvalidated redirects and forwards |
Detectify |
Aug 15, 2016 |
824 |
- |
| Detectify security updates for 13 December |
Detectify |
Dec 13, 2018 |
244 |
- |
| OWASP TOP 10: Cross-site Scripting – XSS |
Detectify |
May 13, 2016 |
1169 |
- |
| Why incorporating web application scanning capabilities with asset monitoring makes a complete EASM solution |
Hakluke |
Apr 06, 2023 |
698 |
- |
| An overview of WordPress Security |
Detectify |
Mar 31, 2016 |
345 |
- |
| Newly added security tests, July 26, 2017: CVE-2017-9791 |
Detectify |
Jul 26, 2017 |
62 |
- |
| Detectify announces new product names |
Detectify |
Nov 09, 2021 |
517 |
- |
| Detectify security updates for 16 April |
Detectify |
Apr 16, 2020 |
290 |
- |
| The buyer’s guide to scalable application security |
Detectify |
Jul 02, 2021 |
2228 |
- |
| Detectify security updates for December 28 |
Detectify |
Dec 28, 2020 |
203 |
- |
| IT Security FAQ 6: What CMS is the most vulnerable? |
Detectify |
Apr 12, 2016 |
196 |
- |
| CAPTCHA does not prevent cross-site request forgery (CSRF) |
Detectify |
Dec 06, 2017 |
798 |
- |
| Staying sane in cybersecurity and dealing with burnout |
Hakluke |
Oct 08, 2021 |
3078 |
- |
| Security Update: Ivanti Connect Secure (CVE-2025-0282) |
Detectify |
Jan 13, 2025 |
162 |
- |
| DNS Hijacking – Taking Over Top-Level Domains and Subdomains |
Detectify |
Jan 19, 2021 |
1168 |
- |
| Detectify Security Advisor explains account hijacking attack scenarios using abnormal OAuth-flows |
Detectify |
Jul 06, 2022 |
527 |
- |
| Q&A with John Mick, Developer, Afonso |
Detectify |
Sep 11, 2015 |
473 |
- |
| IT Security FAQ 8: SSL? Https:// – how do you connect it? What info should be encrypted? |
Detectify |
May 19, 2016 |
191 |
- |
| Security Update: Spring4Shell vulnerability modules already scanning on Detectify |
Detectify |
Apr 01, 2022 |
557 |
- |
| New e-book: Do you know what External Attack Surface Management is? |
Detectify |
Oct 07, 2022 |
360 |
- |
| Detectify security updates for January 11 |
Detectify |
Jan 11, 2021 |
244 |
- |
| Proactively reduce risks with Attack Surface Custom Policies |
Detectify |
Oct 18, 2022 |
1488 |
- |
| Detectify security updates for November 30 |
Detectify |
Nov 30, 2020 |
318 |
- |
| Shortcomings with CVE-overreliance and flaws in security scoring systems |
Charlotte Kerridge |
Dec 18, 2023 |
664 |
- |
| Enriched attack surface view, DNS filtering, and more |
Victor Arellano |
Jun 15, 2022 |
339 |
- |
| Detectify security updates for 20 February |
Detectify |
Feb 21, 2019 |
239 |
- |
| IT Security FAQ |
Detectify |
May 01, 2016 |
528 |
- |
| Detectify announces presence at Black Hat USA 2021 |
Detectify |
Aug 02, 2021 |
448 |
- |
| Newly added security tests, September 21, 2017: Zend, cPanel and WordPress plugins |
Detectify |
Sep 21, 2017 |
127 |
- |
| Newly added security tests June 8, 2017: Adobe ColdFusion |
- |
Jun 08, 2017 |
62 |
- |
| Detectify security updates for 29 April |
Detectify |
May 06, 2020 |
258 |
- |
| Why agencies should work with security |
Detectify |
Feb 23, 2017 |
1178 |
- |
| OWASP TOP 10: Sensitive Data Exposure |
Detectify |
Jul 01, 2016 |
1120 |
- |
| How attack surface management helps during an M&A process |
Detectify |
Sep 05, 2022 |
995 |
- |
| Bypassing IDOR protection with URL shorteners |
Xavier Blasco (a.k.a Lerhan) |
Jul 03, 2019 |
942 |
- |
| How to scan your attack surface with hacker-powered tools |
Detectify |
Aug 25, 2022 |
1027 |
- |
| IT Security FAQ 3: What password-managers are good? Why should you use one? |
Detectify |
Mar 02, 2016 |
320 |
- |
| OWASP TOP 10: Insufficient Logging and Monitoring |
Detectify |
Apr 06, 2018 |
687 |
- |
| Detectify honored as Market Leader in Attack Surface Management in Global InfoSec Awards |
- |
Apr 24, 2023 |
377 |
- |
| Jobs-to-be-Done: See the current state of security and understand what is exposed and how it has evolved over time |
Charlotte Kerridge |
Oct 09, 2023 |
988 |
- |
| Meet the team with Roberto Giachetta: a teaching developer |
Detectify |
Sep 28, 2018 |
776 |
- |
| The danger of disabling automatic updates on WordPress |
Detectify |
Oct 27, 2016 |
480 |
- |
| What are the different types of XSS? |
Detectify |
Mar 15, 2019 |
652 |
- |
| What is a blind vulnerability and how can it be exploited and detected? |
Detectify |
Jul 19, 2019 |
1268 |
- |
| Detectify secures €21,5 million in Series B round to bring world-class cyber security to everyone |
Detectify |
Nov 26, 2019 |
614 |
- |
| Detectify Crowdsource – not your average bug bounty platform |
Detectify |
Jun 30, 2020 |
875 |
- |
| New security test: CVE-2019-11043 PHP-FPM & NGINX RCE |
Detectify |
Oct 31, 2019 |
576 |
- |
| Get to know our new Domains page |
Victor Arellano |
Oct 14, 2024 |
573 |
- |
| An overview of the most common vulnerabilities |
Detectify |
Feb 13, 2016 |
372 |
- |
| Newly Added Security Tests, February 3, 2017: WordPress plugins and Elastic search |
Detectify |
Feb 03, 2017 |
90 |
- |
| How to interpret your Detectify score |
Detectify |
Feb 14, 2022 |
1050 |
- |
| See technologies on the attack surface plus updates to Attack Surface Custom Policies and API keys |
Victor Arellano |
Dec 01, 2022 |
613 |
- |
| Improving domain discovery with new connectors |
Victor Arellano |
Feb 01, 2024 |
629 |
- |
| Website security check: a step-by-step guide |
Detectify |
Feb 21, 2018 |
851 |
- |
| Detectify Security Updates for September 17 |
Detectify |
Sep 17, 2020 |
428 |
- |
| Major improvement to web crawling, customization, and new test |
Rickard Carlsson |
Jan 30, 2023 |
446 |
- |
| Detectify Security Updates for June 1 |
Detectify |
Jun 01, 2021 |
348 |
- |
| What is Cross-site Scripting (XSS) and how can you fix it? |
Detectify |
Dec 16, 2015 |
733 |
- |
| Top 5 high severity CVEs detected by Detectify since June 2020 |
Detectify |
Jul 12, 2021 |
580 |
- |
| Tips for secure remote work |
Detectify |
Mar 14, 2018 |
516 |
- |
| CORS misconfigurations explained |
Detectify |
Apr 26, 2018 |
1017 |
- |
| Product update: Dynamic API Scanning, Recommendations & Classifications, and more |
Detectify |
Sep 26, 2025 |
549 |
- |
| Detectify’s approach to asset discovery is at the forefront of the security landscape |
Grace Macej |
May 05, 2023 |
906 |
- |
| Cloud security basics: 9 security issues to address as you move to cloud services |
Detectify |
Nov 12, 2018 |
1227 |
- |
| Newly added security tests March 15, 2017: WordPress, Joomla and Drupal |
Detectify |
Mar 15, 2017 |
92 |
- |
| What is an SQL Injection and how do you fix it? |
Detectify |
Mar 08, 2016 |
566 |
- |
| Top 3 mistakes when implementing an External Attack Surface Management (EASM) program |
Hakluke |
Mar 01, 2022 |
975 |
- |
| Q&A with Joachim Hedenius, KRY |
Detectify |
Sep 07, 2016 |
703 |
- |
| Meet the team: Korab Shala – Graphic designer |
Detectify |
Feb 22, 2018 |
862 |
- |
| Detectify security updates for 7 March |
Detectify |
Mar 07, 2019 |
330 |
- |
| Gartner’s top security threat and pentesting vs continuous scans – what you missed from Hack Yourself Stockholm 2021 |
Detectify |
May 18, 2022 |
739 |
- |
| Detectify security updates for 4 September |
Detectify |
Sep 04, 2020 |
399 |
- |
| Misconfigured email servers open the door to spoofed emails from top domains |
Linus Särud |
Jun 20, 2016 |
1942 |
- |
| Detectify among top 5% over time in tech industry for employee wellbeing |
Kristoffer Jaworska Persson |
Aug 02, 2022 |
1342 |
- |
| 4 fundamental questions on EASM — and how Detectify’s solution answers them |
Hakluke |
Jan 20, 2023 |
909 |
- |
| Meet the Hacker: Yasin Soliman “The bug bounty community motivates me hugely” |
Detectify |
Oct 03, 2017 |
714 |
- |
| All in on flexible and efficient integrations |
Victor Arellano |
Oct 04, 2024 |
788 |
- |
| Sending billions of daily requests without breaking things with our rate limiter |
André Schaffer \u0026 Haris Kabiljagic |
Jan 23, 2025 |
1631 |
- |
| Improving WordPress plugin security from both attack and defense sides |
Paul Dannewitz |
Jul 23, 2019 |
2751 |
- |
| Detectify security updates for 19 October |
Detectify |
Oct 19, 2018 |
272 |
- |
| 7 biggest security news of 2017 |
Detectify |
Dec 15, 2017 |
930 |
- |
| Recently added crowdsourced vulnerabilities – November 2023 |
Detectify |
Nov 29, 2023 |
388 |
- |
| Detectify launches a crowd-based security program to ensure an always updated service |
Detectify |
Nov 11, 2016 |
542 |
- |
| Detectify security updates for 20 September |
Detectify |
Sep 21, 2018 |
525 |
- |
| Newly added security tests May 11, 2017: CGIemail |
Detectify |
May 11, 2017 |
70 |
- |
| OWASP TOP 10: Injection |
Detectify |
Apr 06, 2016 |
1108 |
- |
| IT Security FAQ 4: Is two-factor authentication really necessary online? How do you activate it? |
Detectify |
Mar 09, 2016 |
266 |
- |
| Humans of Detectify: Helping our customers with AppSec success |
Detectify |
May 18, 2021 |
693 |
- |
| Detectify is now available on AWS Marketplace |
Detectify |
Apr 22, 2024 |
290 |
- |
| Job-to-be-Done: Understand what is being continuously tested and monitored across my attack surface |
Charlotte Kerridge |
Dec 05, 2023 |
672 |
- |
| Q&A with Jesse Wojtkowiak, Pipedrive |
Detectify |
Dec 12, 2016 |
586 |
- |
| Meet the Hacker: europa |
Detectify |
Jan 04, 2019 |
916 |
- |
| Detectify security updates for December 14 |
Detectify |
Dec 14, 2020 |
395 |
- |
| Detectify checks for critical Oracle WebLogic Server RCEs (CVE-2020-14882, CVE-2020-14750) |
Detectify |
Dec 03, 2020 |
350 |
- |
| OWASP TOP 10: Broken Access Control |
Detectify |
Apr 10, 2018 |
842 |
- |
| Detectify achieves advanced technology partner status with AWS |
Detectify |
Mar 06, 2018 |
364 |
- |
| Meet Tom Hudson – Collaboration is the way forward |
Detectify |
Apr 15, 2020 |
1286 |
- |
| Here’s how EASM is filling the gaps missed by AppSec testing solutions |
Grace Macej |
Mar 28, 2023 |
881 |
- |
| Inside the mind of a malicious hacker |
Detectify |
Mar 27, 2018 |
1305 |
- |
| ACME TLS-SNI-01 shared hosting exploit using Let’s Encrypt |
Detectify |
Jan 12, 2018 |
583 |
- |
| Crowdsource Success Story: From an Out-of-Scope Open Redirect to CVE-2020-1323 |
Özgür Alp |
Aug 14, 2020 |
1315 |
- |
| Do you trust your cache? – Web Cache Poisoning explained |
Detectify |
Jul 28, 2020 |
1392 |
- |
| Newly added security tests April 11, 2017: WordPress, Joomla, and CGIemail |
Detectify |
Apr 11, 2017 |
62 |
- |
| A guide to HTTP security headers for better web browser security |
Detectify |
Feb 05, 2019 |
1202 |
- |
| Continuously Hack Yourself because WAF security is not enough |
Detectify |
Nov 25, 2020 |
1370 |
- |
| How women of Detectify are redefining the security sector for the better |
Detectify |
Mar 08, 2022 |
2118 |
- |
| CDNs – Minimize damages if the CDN is hacked |
Linus Särud |
Oct 27, 2016 |
876 |
- |
| Improvements to scheduled scans, freshly added tests, and more |
Victor Arellano |
Jun 08, 2022 |
250 |
- |
| Crowdsource hacker first to find Zero-Day CVE-2021-43798 in Grafana |
Detectify |
Dec 15, 2021 |
667 |
- |
| HTTP response splitting exploitations and mitigations |
Detectify |
Jun 14, 2019 |
611 |
- |
| Top 12 tips every pentester should know |
Detectify |
Apr 01, 2020 |
591 |
- |
| Automated certificate assessments now possible |
Victor Arellano |
Apr 05, 2023 |
635 |
- |
| More improvements to Attack Surface Custom Policies |
Victor Arellano |
Nov 11, 2022 |
494 |
- |
| Security updates to cover your entire attack surface |
Victor Arellano |
Mar 29, 2022 |
578 |
- |
| Should your team really run DAST in staging environments? |
Rickard Carlsson |
Feb 02, 2023 |
1059 |
- |
| Meet the Hacker: Inti De Ceukelaire |
Detectify |
May 03, 2019 |
3554 |
- |
| Improving security visibility in the remote-work reality |
Detectify |
Feb 10, 2021 |
890 |
- |
| Q&A with Todd Troutman, Qualpay |
Detectify |
Jan 30, 2017 |
484 |
- |
| 7 things that your EASM platform should be able to do |
Hakluke |
Apr 26, 2023 |
999 |
- |
| Attackers vs Defenders: Mind the perspective gap |
Hakluke |
Mar 15, 2022 |
774 |
- |
| The trouble with CVEs and vulnerability management in modern tech stacks |
Rickard Carlsson |
Jan 05, 2023 |
1257 |
- |
| Detectify Connector with AWS Route 53 |
Detectify |
Nov 25, 2019 |
475 |
- |
| Detectify strengthens its authority in G2’s security categories |
Detectify |
Jun 30, 2022 |
318 |
- |
| Detectify discusses e-commerce security on TV4’s Nyhetsmorgon |
Detectify |
Nov 23, 2016 |
140 |
- |
| Drupalgeddon 2.0 (CVE-2018-7600) |
Detectify |
Apr 18, 2018 |
272 |
- |
| Detectify Security Updates for March 8 |
Detectify |
Mar 08, 2021 |
498 |
- |
| IT Security FAQ 1: What should you think about when approving an app on Facebook? |
Detectify |
Feb 17, 2016 |
219 |
- |
| State of your attack surface, improved user permissions, and many new tests |
Victor Arellano |
Jun 30, 2022 |
317 |
- |
| Survivorship bias, growing attack surface and finding your weakest links |
Fredrik Nordberg Almroth |
Dec 07, 2021 |
1989 |
- |
| Meet the Team: Johan Svensson – Growing with Detectify |
Detectify |
Dec 04, 2020 |
643 |
- |
| Spot risks with our new IP view |
Victor Arellano |
Aug 10, 2023 |
567 |
- |
| The service desk as an attack vector |
Emma Lilliestam |
Oct 06, 2016 |
1275 |
- |
| New research: SSL certificates could be leaking company secrets |
Detectify |
Nov 04, 2021 |
1012 |
- |
| Detectify housewarming party |
Detectify |
Aug 29, 2017 |
247 |
- |
| Quickly access insights about apex domains on the attack surface |
Victor Arellano |
Aug 03, 2022 |
346 |
- |
| Job-to-be-Done: Quickly resolve exposures and vulnerabilities |
Charlotte Kerridge |
Oct 27, 2023 |
1121 |
- |
| OWASP TOP 10 2013: Cross-site Request Forgery – CSRF |
Detectify |
Jul 19, 2016 |
1066 |
- |
| Is your Magento store vulnerable? |
Detectify |
Oct 10, 2017 |
1258 |
- |
| 7 biggest web security news stories of 2016 |
Detectify |
Dec 15, 2016 |
766 |
- |
| Q&A with Erik Glad, IT Security, SBAB |
Detectify |
Sep 02, 2016 |
397 |
- |
| AWS S3 misconfiguration explained – and how to fix it |
Detectify |
Jul 13, 2017 |
720 |
- |
| Should we regulate the Internet of Things? |
Emma Lilliestam |
Apr 24, 2017 |
1223 |
- |
| Newly added security tests, October 4, 2017: WordPress and Magento vulnerabilities |
Detectify |
Oct 04, 2017 |
81 |
- |
| Detectify security updates for 31 October |
Detectify |
Nov 01, 2018 |
531 |
- |
| Apache Struts – history, security issues and impact of vulnerabilities |
Detectify |
Mar 21, 2019 |
388 |
- |
| Humans of Detectify: You don’t need to be an expert to get into security |
Detectify |
Apr 08, 2021 |
877 |
- |
| Detectify security updates for 7 February |
Detectify |
Feb 07, 2019 |
209 |
- |
| Now possible to group assets, from domains to technologies |
Victor Arellano |
Dec 23, 2022 |
563 |
- |
| General Data Protection Regulation: What it means for your business |
Sofia Gunnarsson |
Jul 20, 2016 |
1939 |
- |
| Detectify’s journey to an AWS multi-account strategy |
Haris Kabiljagic |
Apr 13, 2023 |
2230 |
- |
| How ethical hacker Frans Rosén deleted your Apple Shortcuts via CloudKit |
Detectify |
Sep 13, 2021 |
938 |
- |
| Detectify product highlights and other major developments in 2023 |
Charlotte Kerridge |
Dec 19, 2023 |
1048 |
- |
| OWASP TOP 10: Security Misconfiguration |
Detectify |
Jun 17, 2016 |
613 |
- |
| How secure is the PDF file? |
Detectify |
Aug 27, 2020 |
720 |
- |
| Improved navigation to the attack surface and scan settings |
Victor Arellano |
Jul 19, 2022 |
337 |
- |
| Detectify continues consolidating its authority in G2’s security categories |
Detectify |
Oct 05, 2022 |
492 |
- |
| Security Update: Critical CUPS Vulnerability |
- |
Sep 27, 2024 |
485 |
- |
| Scaling up Security with DevOps and CI/CD practices |
Detectify |
Apr 03, 2019 |
879 |
- |
| Infinite payloads? The future of API Testing with dynamic fuzzing |
Detectify |
Sep 18, 2025 |
1091 |
- |
| Detectify security updates for 18 April |
Detectify |
Apr 18, 2019 |
297 |
- |
| IT Security FAQ 10: What is malware, phishing, spyware, data mining and DDoS? |
Detectify |
Jun 15, 2016 |
224 |
- |
| The full statistic from our third party research |
Detectify |
Feb 02, 2017 |
2818 |
- |
| Detectify and AWS Security Solution Successes: Sonokinetic |
Detectify |
Aug 15, 2017 |
232 |
- |
| Ecommerce security research: Majority of Swedish online stores don’t force HTTPS |
Detectify |
Nov 22, 2016 |
761 |
- |
| Detectify raises €5 million led by Insight Venture Partners |
Detectify |
Mar 16, 2018 |
487 |
- |
| Meet a Hacker Hero – Eva Galperin |
- |
Sep 24, 2021 |
1679 |
- |
| A hacker’s approach to finding security bugs in open source software |
Detectify |
Apr 22, 2021 |
1523 |
- |
| 7 SecOps trends that could shape your security in 2022 |
Nahla Davies |
Nov 16, 2021 |
1053 |
- |
| Detectify opens US office in Boston to accelerate growth |
Detectify |
Mar 19, 2019 |
380 |
- |
| Common security misconfigurations and remediations |
Detectify |
Jul 08, 2020 |
664 |
- |
| 6 months after the launch of Detectify Crowdsource: What has happened so far? |
Detectify |
May 03, 2017 |
489 |
- |
| How To Improve Your WordPress Security |
Detectify |
Mar 15, 2016 |
332 |
- |
| Detectify team offsite |
Detectify |
Feb 10, 2017 |
292 |
- |
| Launching new domains view and enhanced policies for unprecedented control over attack surface data |
Detectify |
Jun 07, 2024 |
315 |
- |
| Detectify Security Updates for 27 April |
Detectify |
Apr 27, 2021 |
411 |
- |
| Top 10 Most Critical CVEs Added in 2020 |
Detectify |
Dec 30, 2020 |
962 |
- |
| Top 3 takeaways from CIO Trend 2016 |
Johan Norrman |
Feb 22, 2016 |
484 |
- |
| How to Prevent a Subdomain Takeover in Your Organization |
Detectify |
Jan 22, 2025 |
2176 |
- |
| New security tests, November 15, 2017: Image Resizer Exposure in .NET |
Detectify |
Nov 16, 2017 |
101 |
- |
| One year of Detectify’s hacker network Crowdsource |
Detectify |
Nov 10, 2017 |
776 |
- |
| How attackers exploit the WordPress Easy-WP-SMTP zero-day |
Detectify |
Dec 21, 2020 |
348 |
- |
| Vulnerabilities page updates: Major improvements to accelerate remediation |
Victor Arellano |
Mar 16, 2023 |
533 |
- |
| The 7 biggest web security news of 2015 |
Detectify |
Dec 16, 2015 |
944 |
- |
| Detectify Company Year in Review 2020 |
Detectify |
Dec 17, 2020 |
793 |
- |
| Detectify Security Updates for November 16 |
Detectify |
Nov 16, 2020 |
475 |
- |
| Assign severity ratings on Attack Surface Custom Policies |
Victor Arellano |
May 12, 2023 |
406 |
- |
| Detectify Crowdsource monthly recap – July 2017 |
Detectify |
Aug 03, 2017 |
357 |
- |
| Introducing Jobs-to-be-Done: a way to help our users achieve their goals |
Charlotte Kerridge |
Sep 28, 2023 |
570 |
- |
| Ethical hacker: CISOs have more to worry about than a zero day exploit |
David Jacoby |
Apr 14, 2022 |
1894 |
- |
| Subteams functionality through the Detectify API |
Victor Arellano |
Jun 09, 2022 |
197 |
- |
| 5 things your IT department needs to be doing |
Faith MacAnas |
Jan 19, 2017 |
928 |
- |
| Crowdsourced security is now a need, not a nice to have |
Hakluke |
Nov 04, 2021 |
1025 |
- |
| Meet a Hacker Hero: Hakluke |
Detectify |
Sep 14, 2021 |
679 |
- |
| How to Improve Your WordPress Security: Plugins and Themes |
Detectify |
Mar 30, 2016 |
559 |
- |
| Why is securing the external attack surface a hot topic for security experts right now? |
Ryan Rudder |
Feb 23, 2022 |
1170 |
- |
| IT Security FAQ 9: What is the difference between a firewall, antivirus and services like Detectify? |
Detectify |
Jun 08, 2016 |
248 |
- |
| How to hack smarter and find critical vulnerabilities with the new fuzzing engine |
Detectify |
Mar 04, 2021 |
554 |
- |
| Shifting left is great, but shifting right is more cost-effective |
Rickard Carlsson |
Nov 23, 2022 |
1099 |
- |
| IT Security FAQ 7: What is OWASP Top 10? |
Detectify |
May 04, 2016 |
192 |
- |
| Q&A with Grant McCracken, Bugcrowd: “You might be thinking, do I want people to hack me? The answer is yes!” |
Detectify |
Oct 17, 2018 |
1342 |
- |
| The danger of third party scripts |
Detectify |
Feb 02, 2017 |
1170 |
- |
| How Content Security Policy (CSP) can prevent header exploits |
Detectify |
Jul 11, 2019 |
1334 |
- |
| OWASP TOP 10: XXE |
Detectify |
Apr 17, 2018 |
875 |
- |
| Detectify security updates for 23 August |
Detectify |
Aug 23, 2018 |
457 |
- |
| WPA2 security flaw puts millions of devices at risk – here’s how to stay safe |
Detectify |
Oct 16, 2017 |
647 |
- |
| Detectify and AWS Security Solution Successes: KRY |
Detectify |
Aug 15, 2017 |
225 |
- |
| Detectify now checks for File Disclosure in SSL VPNs – Pulse Secure and Fortinet |
Detectify |
Aug 22, 2019 |
605 |
- |
| Diversity & Belonging at Detectify: Challenging the traditional way to do security |
Victor Arellano |
Feb 19, 2021 |
651 |
- |
| The real impact of an Open Redirect vulnerability |
Detectify |
May 16, 2019 |
1150 |
- |
| Server architecture – Serverless vs Cloud vs On-prem |
Detectify |
Mar 09, 2019 |
952 |
- |
| Newly added security tests, June 28, 2017: vBulletin CVE-2015-7808 |
Detectify |
Jun 30, 2017 |
62 |
- |
| Detectify security updates for 02 May |
Detectify |
May 02, 2019 |
214 |
- |
| Detectify Research Team releases Ugly Duckling, a web scanner for hackers |
Detectify |
May 18, 2021 |
828 |
- |
| [New research] Subdomain takeovers are on the rise and are getting harder to monitor |
Detectify |
Mar 22, 2022 |
771 |
- |
| Guest blog: Karim Rahal on a Spotify playlist hack |
Karim Rahal |
Jan 26, 2016 |
559 |
- |
| Detectify wins 2022 Fortress Cyber Security Award |
Detectify |
Jun 07, 2022 |
367 |
- |
| Product comparison: Detectify vs. Qualys |
Detectify |
Oct 03, 2025 |
188 |
- |
| Web security trends 2020 from security leaders |
Detectify |
Feb 19, 2020 |
1017 |
- |
| 9 biggest web security news of 2018 |
Detectify |
Dec 19, 2018 |
1434 |
- |
| Challenges when implementing an AWS multi-account strategy |
Haris Kabiljagic |
Jul 12, 2023 |
1190 |
- |
| Detectify security updates for January 25 |
Detectify |
Jan 25, 2021 |
530 |
- |
| How to build an incident response plan |
Detectify |
Jun 05, 2018 |
1257 |
- |
| Proof of Concept video: CVE-2018-2894 Oracle WebLogic RCE |
Detectify |
Nov 14, 2018 |
355 |
- |
| Bypassing Cloudflare WAF with the origin server IP address |
Gwendal Le Coguic |
Jul 31, 2019 |
1663 |
- |
| Detectify security updates for February 22 |
Detectify |
Feb 22, 2021 |
445 |
- |
| Detectify security updates for 10 January |
Detectify |
Jan 10, 2019 |
240 |
- |
| 3 ways ethical hackers can help you protect your website |
Detectify |
May 09, 2018 |
688 |
- |
| New research – Detectify ethical hacker kept the country code domain .cd safe from potential attacks |
Detectify |
Jan 15, 2021 |
436 |
- |
| Product comparison: Detectify vs. Tenable |
Detectify |
Oct 10, 2025 |
270 |
- |
| Why API security is different (and why it matters) |
Joviane Jardim |
Oct 14, 2025 |
686 |
- |
| Product comparison: Detectify vs. Escape |
Detectify |
Oct 20, 2025 |
180 |
- |
| New API testing category now available |
Detectify |
Oct 23, 2025 |
778 |
- |
| Migrating Critical Messaging from Self-Hosted RabbitMQ to Amazon MQ |
Maurits Johansson |
Oct 23, 2025 |
3034 |
- |
| The API vulnerabilities nobody talks about: excessive data exposure |
Joviane Jardim |
Oct 28, 2025 |
1236 |
- |