Company
Date Published
Author
Detectify
Word count
525
Language
-
Hacker News points
None

Summary

Detectify has updated its security tool with new findings and features every two weeks, based on contributions from its security researchers and the Crowdsource ethical hacker community, although the specifics of all updates cannot be publicly disclosed due to confidentiality agreements. Recent improvements include the addition of tests for vulnerabilities reported by ethical hackers, such as information disclosure issues with Jolokia due to default configurations, stored XSS vulnerabilities in WordPress plugins like Loginizer and iThemes Security, XSS problems in the Atmosphere Framework's JSONP endpoint, and a remote code execution vulnerability in the WordPress Duplicator plugin. These updates aim to enhance the security scanning capabilities of Detectify, and users are encouraged to begin scans for the latest vulnerabilities, with options available for both new users and existing account holders.