What is Detectify?
Detectify Labs
A security research blog
App Security
Writeups
How to
Crowdsource
Detectify releases Ugly Duckling, an open-source web scanner for ethical hackers
Detectify Crowdsource
open-source
scanner
Most read articles
How I made LastPass give me all your passwords
»
Hacking Slack using postMessage and WebSocket-reconnect to steal your precious token
»
Chrome Extensions – AKA Total Absence of Privacy
»
Top 12 hacker tips to secure your SPA from Crowdsource
Detectify Crowdsource
Get research and tips from Detectify security experts and the Crowdsource hacker community
Subscribe to the Detectify Monthly Round-up
CVE-2020-29653: Stealing Froxlor login credentials using dangling markup
0-day
CVE
Detectify Crowdsource
XSS
Middleware, middleware everywhere – and lots of misconfigurations to fix
Frans Rosén
load balancer
Mathias Karlsson
middleware vulnerabilities
misconfigurations
Nginx
How I hijacked the top-level domain of a sovereign state
ccTLD
DNS hijacking
Domain hijacking
Fredrik Almroth
TLD takeover
Modern PHP Security Part 2: Breaching and hardening the PHP engine
PHP
Modern PHP Security Part 1: bug classes
modern php
SQLi
SSRF
SSTI
How-to Tutorial: PHP Webshell De-Obfuscation
php malware
Investigation of PHP Web Shell Hexedglobals.3793 Variants
PHP
php malware
Thinking outside of the password manager box
password managers
« Previous
1
2
3
4
5
6
…
11
Next »
Start securing your web apps with tech powered by Detectify Crowdsource hackers
Start a 2-week free trial of Detectify and go hack yourself