Doyensec Profile Banner
Doyensec Profile
Doyensec

@Doyensec

Followers
4K
Following
534
Media
272
Statuses
594

Doyensec works at the intersection of software development and offensive engineering. We discover vulnerabilities others cannot, and help mitigate the risk.

San Francisco / Warsaw
Joined May 2016
Don't wanna be here? Send us removal request.
@Doyensec
Doyensec
1 year
Has reliance on SSO left orgs with a single point of exploitation? Our latest research by @lacerenza_fra explores various IdP compromise scenarios as well as how to harden and detect attacks in @goteleport installations. #doyensec #teleport #security.
Tweet media one
0
14
44
@Doyensec
Doyensec
7 days
📢Just published - Our new white paper comparing @semgrep's Code and Community editions! We dove into both versions of this popular tool to see what the differences were and how they performed against each other. #doyensec #appsec #security #semgrep
Tweet media one
0
9
36
@Doyensec
Doyensec
8 days
Several members of the @doyensec team are heading to @TumpiConIT 🇮🇹 for our Norbert Szetei's (@73696e65) presentation on his awesome ksmbd security research. If you're around, make sure to talk to @lucacarettoni & the team!.#doyensec #appsec #TumpiCon .
Tweet media one
0
2
8
@Doyensec
Doyensec
16 days
🚀We have just released a new Security Advisory for @NASA's CFITSIO library 🛰️. Click the link for details on the Heap Overflow, Type Confusion, Out-of-Bound Writes and other vulnerabilities discovered by our @a_denkiewicz !. #doyensec #appsec #security
Tweet media one
0
10
44
@Doyensec
Doyensec
23 days
Thanks to inspiration and support from @goteleport, #doyensec is proud to release the Security Policy Evaluation Framework, a tool for testing security policy engines!.cc:@OpenPolicyAgent,@OpenFGA,@AWSSecurityInfo. #appsec #rigo #cedar #openfga #security
Tweet media one
0
6
28
@Doyensec
Doyensec
28 days
🚨Just posted🚨: Learn about real-world API authorization vulnerabilities we frequently see with the slides from @tell1c0's recent presentation at @CONFidenceConf in Krakow. #doyensec #appsec #security
Tweet media one
1
35
106
@Doyensec
Doyensec
1 month
We'd like to welcome 👋@imarcex_ as our latest Application Security Intern. Welcome aboard! 🎉. #doyensec #appsec #internship
Tweet media one
0
6
28
@Doyensec
Doyensec
1 month
Attending @confidenceconf in Krakow 🇵🇱 this weekend? Be sure to check out our @tell1c0's presentation - API Authorization Antipatterns: #doyensec #appsec #confidencecon.
0
2
14
@Doyensec
Doyensec
2 months
Several members of the #doyensec team are here in Berlin 🇩🇪attending @offensive_con this weekend! Ping us or just say "hallo" in person, if you'd like to talk #appsec or grab a coffee. We're looking forward to some amazing talks! .#offensivecon #security
Tweet media one
1
4
27
@Doyensec
Doyensec
2 months
We'd also like to recognize @b0n0b0__ 's cooperation on this advisory! 🙏.
@Doyensec
Doyensec
2 months
🚨 Advisory Alert!🚨 We've just published our @drw0if's advisory regarding a heap overflow in @HAProxy as part of our coordinated disclosure process. Read all the details here: #doyensec #appsec #security #haproxy
Tweet media one
0
3
10
@Doyensec
Doyensec
2 months
🚨 Advisory Alert!🚨 We've just published our @drw0if's advisory regarding a heap overflow in @HAProxy as part of our coordinated disclosure process. Read all the details here: #doyensec #appsec #security #haproxy
Tweet media one
0
6
24
@Doyensec
Doyensec
2 months
We'd like to welcome the latest member of our team - Diego Perez, our new Application Security Intern! Welcome aboard! 🎉. #doyensec #appsec #security #internships
Tweet media one
0
1
23
@Doyensec
Doyensec
2 months
Going beyond SSO, our @lacerenza_fra decided to take a deep dive into SCIM in our latest blog post. Read it today to learn how including this user identity standard in your next test's scope can reap big rewards!. #doyensec #appsec #security #scim
Tweet media one
2
6
32
@Doyensec
Doyensec
2 months
Our @73696e65's latest research has resulted in at least 1⃣5⃣ CVEs in ksmbd🤯, including multiple use-after-frees, bounds checks, type confusion and overflows‼️ Check it out today!. #doyensec #appsec #security #linux
Tweet media one
0
15
38
@Doyensec
Doyensec
2 months
Thanks to all the people who make @BSSidesSF happen every year. We're always happy to sponsor such a great conference! All of the #Doyensec team who attended had a great time! See you next year!.#bsides #bsidessf
Tweet media one
0
1
14
@Doyensec
Doyensec
2 months
RT @tell1c0: After many late nights and busted apps as security consultant at @Doyensec , I trained my spidey senses 🕷️ to detect when an….
0
4
0
@Doyensec
Doyensec
2 months
Also, congratulations to the winner of our Flipper Zero prize - happy hacking! .#doyensec #flipperzero
Tweet media one
0
0
0
@Doyensec
Doyensec
2 months
If you're attending @BSidesSF , make sure to stop by the Doyensec booth and say hello! You'll find several our team members in the vendor area and throughout the conference!.#doyensec #appsec #security
Tweet media one
1
1
4
@Doyensec
Doyensec
2 months
The #Doyensec team is proud to sponsor @BSidesSF again this year ! If you're in the 🌉San Francisco🌉 area this weekend come meet several of our team members in person 🫂! Plus, stop by our booth for a chance to win a Flipper Zero 🐬!. #appsec #security #bsidessf #flipperzero
Tweet media one
0
1
11
@Doyensec
Doyensec
3 months
Happy Friday! Here are links to the other two #ComfyUI advisories published as part of our coordinated disclosure process. #doyensec #appsec #security
Tweet media one
0
0
0
@Doyensec
Doyensec
3 months
📢 Upset about losing CVE data? Our @MaitaiThe & @lokiuox dropped new 🔥 critical #ComfyUI vulnerabilities, including this RCE, to cheer you up 😉. These are published as part of our coordinated disclosure process. #doyensec #appsec #security
Tweet media one
1
9
26