What is Detectify?

Changing the URL of social media sharing buttons

open redirect phishing social media

How I exploited ACME TLS-SNI-01 issuing Let’s Encrypt SSL-certs for any domain using shared hosting

Amazon PayPal Public Information Security Questions

Security Questions are not secure

Detectify Crowdsource Peter Jaric Selenium Grid

Guest Blog: Don’t Leave your Grid Wide Open

Chrome privacy Tinder

TrackMania – a Chrome plugin to stalk your friends on Tinder

Detectify Crowdsource DNS spoofing vulnerability

Guest blog: Bypassing domain control verification with DNS response spoofing

Chrome Chrome extensions Facebook Frans Rosén XSS

Dissecting the Chrome Extension Facebook malware

Tesla XSS

How we invented the Tesla DOM DOOM XSS

AWS bug bounty Frans Rosén privacy XSS

A deep dive into AWS S3 access controls – taking full control over your assets

Detectify Crowdsource Persistent XSS Team Tailor XSS

How I found a persistent XSS affecting thousands of career sites