What is Detectify?

Writeups

What’s happening in Security? Detectify Labs is the home to novel security writeups from trusted security researchers active in the community. Contributors include Frans Rosén, Mathias Karlsson, Fredrik N. Almroth, and more.

Hijacking of abandoned subdomains part 2

DNS Resource Records Hostile Subdomain takeover Microsoft Szymon Gruszecki
Desk Github Heroku Hostile Subdomain takeover

Hostile Subdomain Takeover using Heroku/Github/Desk + more

bash

Bash vulnerability affecting web servers and many other services

Get research and tips from Detectify security experts and the Crowdsource hacker community Subscribe to the Detectify Monthly Round-up
Chrome XSS

Chrome XSS Protection Bias (using Rails)

iOS

Another iOS Lock Screen bypass – Control Center turned off

iOS

iOS 7 lock screen bypass write-up

SQL SQL Injection

The Ultimate SQL Injection Payload

bug bounty XSS

How I got the Bug Bounty for Mega.co.nz XSS

Opera UXSS XSS

Universal XSS in Opera