What is Detectify?

Detectify Labs

A security research blog

The danger of recycled phone numbers

2fa phone number

Scratching the surface of host headers in Safari

host headers password managers Safari XSS
Get research and tips from Detectify security experts and the Crowdsource hacker community Time... to subscribe to the Detectify Monthly Round-up

GraphQL abuse: Bypass account level permissions through parameter smuggling

Detectify Crowdsource

Changing the URL of social media sharing buttons

open redirect phishing social media

Using Google Analytics for data extraction

CSP Detectify Crowdsource Google Analytics

How I exploited ACME TLS-SNI-01 issuing Let’s Encrypt SSL-certs for any domain using shared hosting

Security Questions are not secure

Amazon PayPal Public Information Security Questions

Guest Blog: Don’t Leave your Grid Wide Open

Detectify Crowdsource Peter Jaric Selenium Grid

TrackMania – a Chrome plugin to stalk your friends on Tinder

Chrome privacy Tinder

Guest blog: Bypassing domain control verification with DNS response spoofing

Detectify Crowdsource DNS spoofing vulnerability
Like what you read? Start securing your web apps with tech powered by Detectify Labs contributors Start a 2-week free trial of Detectify and see the difference for yourself