What is Detectify?

Detectify Crowdsource

SSRF vulnerabilities and where to find them

Detectify Detectify Crowdsource Ethical Hacking hakluke server-side request forgery SSRF
bug bounty Detectify Detectify Crowdsource Ethical Hacking hakluke XSS

How To Hack Web Applications in 2022: Part 2

bug bounty Detectify Detectify Crowdsource Ethical Hacking module disclosures

Module disclosures now available for hackers on Detectify Crowdsource

Get research and tips from Detectify security experts and the Crowdsource hacker community Subscribe to the Detectify Monthly Round-up
bug bounty Detectify Crowdsource Frans Rosén OAuth postmessage XSS

Account hijacking using “dirty dancing” in sign-in OAuth-flows

Detectify Detectify Crowdsource Ethical Hacking goodfaith

Hack with ‘goodfaith’ – A tool to automate and scale good faith hacking

Detectify Detectify Crowdsource log4j

Detectify awarded its biggest bounty ever during the height of Log4j

Detectify Crowdsource featured path traversal zero day

How I found the Grafana zero-day Path Traversal exploit that gave me access to your logs

bug bounty Detectify Crowdsource Farah Hawa featured hakluke

10 Types of Web Vulnerabilities that are Often Missed

Cloudkit Detectify Crowdsource Frans Rosén iOS

Hacking CloudKit – How I accidentally deleted your Apple Shortcuts

dependency confusion Detectify Crowdsource supply chain attacks

How blue teams can defend against Dependency Confusion and other novel supply chain attacks