Category: Mix

ecommerce security scan
27
Apr
2023

How to “winterize” and secure your eCommerce website for the holidays

With online retailers and shoppers busy focusing on the upcoming holiday shopping season, cybercriminals are on the hunt for unsuspecting…

Finding XSS in a million websites (cPanel CVE-2023-29489) – Assetnote
27
Apr
2023

Finding XSS in a million websites (cPanel CVE-2023-29489) – Assetnote

cPanel is a web hosting control panel software that is deployed widely across the internet. To be exact, there are…

Bug Bounty vs. VDP | Which Program Is Right for You?
26
Apr
2023

Bug Bounty vs. VDP | Which Program Is Right for You?

What Are the Key Differences between Bug Bounty and VDPs? A VDP is a structured method for third parties, researchers,…

Tom Hudson: Continuously Hack Yourself
26
Apr
2023

Continuously Hack Yourself because WAF security is not enough

Have the WAF security companies got you thinking that a firewall is enough? In a modern landscape, development and security…

What Is a Bug Bounty? Should You Offer One? And How To Do It
26
Apr
2023

What Is a Bug Bounty? Should You Offer One? And How To Do It

What Is a Bug Bounty? A bug bounty is a reward offered by organizations to ethical hackers for discovering security…

Detectify security updates for November 30
26
Apr
2023

Detectify security updates for November 30

Our Crowdsource ethical hacker community has been busy sending us security updates, including 0-day research. For Asset Monitoring, we now push out tests more…

How Hackers Can Strengthen Cloud Security for Applications
26
Apr
2023

How Hackers Can Strengthen Cloud Security for Applications

What Does the Rise of Cloud Mean?  According to Bressers, “It was easy to believe that your systems were secure in…

Detectify checks for critical Oracle WebLogic Server RCEs (CVE-2020-14882, CVE-2020-14750)
26
Apr
2023

Detectify checks for critical Oracle WebLogic Server RCEs (CVE-2020-14882, CVE-2020-14750)

On October 29th, Detectify released a security test to detect a critical Oracle WebLogic Server RCE – CVE-2020-14882. Again in…

How Elastic Attracts and Retains Top Hackers Without Offering the Highest Bounties
26
Apr
2023

How Elastic Attracts and Retains Top Hackers Without Offering the Highest Bounties

At HackerOne’s 2021 Security@ conference, we spoke with Douglas Day, an experienced ethical hacker and senior product security engineer who…

Meet the team with Johan Svensson, Sr Software Engineer
26
Apr
2023

Meet the Team: Johan Svensson – Growing with Detectify

Johan Svensson joined Detectify as an intern in March 2017, and was hired full-time in October that same year. Now…

Bug Bounty Platforms [Best Choices For a Bug Bounty Program]
26
Apr
2023

Bug Bounty Platforms [Best Choices For a Bug Bounty Program]

What Is a Bug Bounty Platform? A bug bounty platform is software that deploys and tracks a bug bounty program….

Detectify Security Champions tips for positive security culture
26
Apr
2023

Top tips for better security awareness on the job from Detectify Security Champions

Security is not compliance. This is something that the security champions at Detectify can agree on and each employee practices…