Web Security Insights for CISOs

  • Introducing Dynamic API Scanning
    by Detectify on September 2, 2025 at 12:00 pm

    Application environments are more complex than ever, with APIs forming the critical connective tissue. But this proliferation has created a vast, often invisible, attack surface. … The post Introducing Dynamic API Scanning appeared first on Blog Detectify.

  • EU Regulating InfoSec: How Detectify helps achieving NIS 2 and DORA compliance
    by Detectify on June 3, 2025 at 8:00 am

    **Disclaimer: The content of this blog post is for general information purposes only and is not legal advice. We are very passionate about cybersecurity rules and … The post EU Regulating InfoSec: How Detectify helps achieving NIS 2 and DORA compliance appeared first on Blog Detectify.

  • A practitioner’s guide to classifying every asset in your attack surface
    by Detectify on May 13, 2025 at 7:06 am

    TLDR: This article details methods and tools (from DNS records and IP addresses to HTTP analysis and HTML content) that practitioners can use to classify … The post A practitioner’s guide to classifying every asset in your attack surface appeared first on Blog Detectify.

  • Redefining AppSec Testing with Intelligent Scan Recommendations and Asset Classification
    by Detectify on April 24, 2025 at 12:00 pm

    The average organization is missing testing 9 out of 10 of their complex web apps that are attacker-attractive targets.  To address this, we’re launching new … The post Redefining AppSec Testing with Intelligent Scan Recommendations and Asset Classification appeared first on Blog Detectify.

  • Security Update: Publicly Exposed Ingress NGINX Admission
    by Detectify on March 26, 2025 at 3:33 pm

    A series of vulnerabilities, known as IngressNightmare (CVE-2025-1097, CVE-2025-1098, CVE-2025-24514, CVE-2025-1974), have been identified in ingress-nginx, a widely used Kubernetes ingress controller. When exploited together, … The post Security Update: Publicly Exposed Ingress NGINX Admission appeared first on Blog Detectify.

  • DNS is the center of the modern attack surface – are you protecting all levels?
    by Detectify on March 18, 2025 at 3:17 pm

    If you are a mature organization, you might manage an external IP block of 65,000 IP addresses (equivalent to a /16 network). In contrast, very … The post DNS is the center of the modern attack surface – are you protecting all levels? appeared first on Blog Detectify.

  • Introducing Alfred for fully autonomous AI-built vulnerability assessments
    by Detectify on March 10, 2025 at 12:00 pm

    We are excited to announce Detectify Alfred, a revolutionary system that uses AI to completely autonomously collect and prioritize threat intelligence and generate high-fidelity security … The post Introducing Alfred for fully autonomous AI-built vulnerability assessments appeared first on Blog Detectify.

  • Making security a business value enabler, not a gatekeeper 
    by Detectify on February 25, 2025 at 2:26 pm

    The traditional perception of security within an organization is as a barrier rather than a facilitator, imposing approval processes and regulations that inevitably slow down … The post Making security a business value enabler, not a gatekeeper  appeared first on Blog Detectify.

  • How Detectify embraces the best of both DAST and ASM
    by Detectify on February 10, 2025 at 11:00 am

    There’s often a lack of understanding when it comes to Dynamic Application Security Testing (DAST) as a methodology versus DAST as a tool. How do … The post How Detectify embraces the best of both DAST and ASM appeared first on Blog Detectify.

  • Sending billions of daily requests without breaking things with our rate limiter
    by Detectify on January 23, 2025 at 10:19 am

    At Detectify, we help customers secure their attack surface. To effectively and comprehensively test their assets, we must send a very high volume of requests … The post Sending billions of daily requests without breaking things with our rate limiter appeared first on Blog Detectify.

Share Websitecyber
We are an ethical website cyber security team and we perform security assessments to protect our clients.