Detectify
@detectify
Followers
11K
Following
4K
Media
1K
Statuses
5K
Advanced application security testing for evolving attack surface coverage. Fuelled by elite ethical hackers. Go hack yourself.
Stockholm and Boston
Joined November 2011
🚨Security Update on CVE-2025-64446 - FortiWeb authentication bypass that leads to complete WAF control. Learn how the impersonation flaw works and what steps to take now. https://t.co/uiUH7KbjZU
blog.detectify.com
Deep dive into CVE-2025-64446, a critical FortiWeb authentication bypass that grants unauthenticated administrative control.
0
0
0
We're now integrating real-world threat data into our AI Researcher Alfred to prioritize and generate protection against the most active CVEs, boosting security speed and relevance for all Detectify customers: https://t.co/Wi95MidM8W
blog.detectify.com
Six months after launch, Alfred, the AI Agent that autonomously builds security tests, has revolutionized our workflow. Alfred has delivered over 450 validated tests against ...
0
0
0
450 automated, validated security tests created in 6 months, targeting critical threats (avg. CVSS 8.5). 70% of tests needed no manual fix. Write-up with our prompts, lessons, & build process in @detectify labs! ⤵️ https://t.co/PHL8UpiYh9
labs.detectify.com
The Detectify AI Agent Alfred fully automates the creation of security tests for new vulnerabilities, from research to a merge request. In its first six ...
1
1
3
With the new API Scanner, customers gain access to dynamic payloads that make every scan different. Instead of relying on static methods, the scanner uses ML to randomize and rotate payloads for each run, ensuring fresh attack simulations every time:
0
0
1
Methods and tools (from DNS records and IP addresses to HTTP analysis and HTML content) that practitioners can use to classify every web app and asset in their attack surface.
blog.detectify.com
TLDR: This article details methods and tools (from DNS records and IP addresses to HTTP analysis and HTML content) that practitioners can use to classify ...
0
1
0
We know it is hard to ensure all essential web apps are covered with deep DAST. Which of your dozens or hundreds of web apps actually need deep testing? Which are processing user data or even have many components that attackers would target?
blog.detectify.com
The average organization is missing testing 9 out of 10 of their complex web apps that are attacker-attractive targets. To address this, we’re launching new ...
0
1
0
NEW OFFICIAL COLLABORATION ALERT! Get your PERSONALIZED @Godzilla_Toho Japanese hanko stamps at https://t.co/IOndflBmmQ for yourself, friends and family! 👉 https://t.co/GNF3HeIYdD
21
91
1K
Attending #RSAC? It's finally your chance to snag some of our famous Go Hack Yourself swag. More info: https://t.co/tikKI4lwaK
0
0
0
Detectify Surface Monitoring customers can test whether they have exposed ingress NGINX admission, which enables the exploit chain for IngressNightmare (CVE-2025-1097, CVE-2025-1098, CVE-2025-24514, CVE-2025-1974) https://t.co/1x9dwVVSdN
blog.detectify.com
A series of vulnerabilities, known as IngressNightmare (CVE-2025-1097, CVE-2025-1098, CVE-2025-24514, CVE-2025-1974), have been identified in ingress-nginx, a widely used Kubernetes ingress control...
0
0
1
DNS is a critical attack surface very often overlooked. Security risks exist at every level (Root, TLDs, Registrars, Providers, Zones, Software Queries). Are you protecting all levels? https://t.co/hn3tgXPU5K
blog.detectify.com
If you are a mature organization, you might manage an external IP block of 65,000 IP addresses (equivalent to a /16 network). In contrast, very ...
0
0
1
Find out how Detectify Alfred (AI-Built vuln assessments) is working around the clock to continuously bring you the latest security research: https://t.co/cD0rNBtuWH
0
0
1
Thanks @helpnetsecurity for featuring Detectify Alfred as one of the releases of the week 🎉
New infosec products of the week: March 14, 2025 - https://t.co/fFTxYJnG3f - @usealloy @detectify @pondurance @SimSpaceCorp - #CyberSecurity #netsec #security #InfoSecurity #CISO #ITsecurity #CyberSecurityNews #SecurityNews
0
0
0
Detectify launches Alfred to automate CVE security testing with AI
siliconangle.com
Detectify launches Alfred to automate CVE security testing with AI - SiliconANGLE
0
1
4
✨ Say hi to Alfred, a revolutionary system that uses AI to completely autonomously collect and prioritize threat intelligence and generate high-fidelity payload-based security tests for likely exploitable vulnerabilities. https://t.co/cD0rNBtuWH
0
1
2
echo “Hello, World!” | wall We have been busy lately. Keep an eye out for some funky news coming shortly. ༼▃ Ĺ̯ ▃༽
0
0
3
🏆 Meet the incredibly talented winners of our Crowdsource Awards 2024: @DhiyaneshDK @yougina @popc0rn94
https://t.co/QfYfm7VlTL
labs.detectify.com
It’s that time of year again! Here at Detectify, we’re excited to celebrate the talent and dedication of our Crowdsource community members with our annual ...
1
1
10
To help our customers secure their complex attack surface we need to send a very large amount of requests to their systems. Our engineering team has put a lot of work into preventing overwhelming their systems while ensuring maximum value. Check out how: https://t.co/kJmAsrzO8T
blog.detectify.com
At Detectify, we help customers secure their attack surface. To effectively and comprehensively test their assets, we must send a very high volume of requests ...
0
0
5