What is Detectify?

Detectify Labs

A security research blog

Guest blog: Bypassing domain control verification with DNS response spoofing

Detectify Crowdsource DNS spoofing vulnerability

Dissecting the Chrome Extension Facebook malware

Chrome Chrome extensions Facebook Frans Rosén XSS
Get research and tips from Detectify security experts and the Crowdsource hacker community Time... to subscribe to the Detectify Monthly Round-up

How we invented the Tesla DOM DOOM XSS

Tesla XSS

A deep dive into AWS S3 access controls – taking full control over your assets

AWS bug bounty Frans Rosén privacy XSS

How I found a persistent XSS affecting thousands of career sites

Detectify Crowdsource Persistent XSS Team Tailor XSS

BountyDash – A local bug bounty statistics dashboard

bug bounty Frans Rosén Github Mathias Karlsson

Login/logout CSRF: Time to reconsider?

login/logout CSRF Mathias Karlsson

Hacking Slack using postMessage and WebSocket-reconnect to steal your precious token

Frans Rosén postmessage Slack

SQLi in INSERT worse than SELECT

Mathias Karlsson SQL Injection

Stored XSS-ing Millions Of Sites Through HTML Comment Box

Like what you read? Start securing your web apps with tech powered by Detectify Labs contributors Start a 2-week free trial of Detectify and see the difference for yourself