Category: Mix

Hunting for SSRF vulnerabilities in Next.js targets
28
Sep
2025

Hunting for SSRF vulnerabilities in Next.js targets

Next.js is a powerful open-source React framework that enables developers to build fast, interactive, and SEO-friendly web applications. With almost…

Product comparison: Detectify vs. Nessus
26
Sep
2025

Product comparison: Detectify vs. Nessus

Nessus Pros Authenticated scanning of internal assets (workstations, network devices). Widely accepted for compliance and audit reporting (e.g., PCI DSS)….

Product comparison: Detectify vs. Burp Enterprise
26
Sep
2025

Product comparison: Detectify vs. Burp Enterprise

Burp Enterprise Pros: Offers granular control and customization to fit the distinct needs of a mature security program. Empowers expert…

Product update: Dynamic API Scanning, Recommendations and Classifications, and more
26
Sep
2025

Product update: Dynamic API Scanning, Recommendations and Classifications, and more

We know the importance of staying ahead of threats. At Detectify, we’re committed to providing you with the tools you…

AI agents building security tests
25
Sep
2025

AI agents building security tests

The Detectify AI Agent Alfred fully automates the creation of security tests for new vulnerabilities, from research to a merge…

[tl;dr sec] #298 - Good CISO / Bad CISO, AWS Infra Canarytokens, Protect Yourself from Compromised NPM Packages
25
Sep
2025

[tl;dr sec] #298 – Good CISO / Bad CISO, AWS Infra Canarytokens, Protect Yourself from Compromised NPM Packages

How to be an effective CISO, deploy decoy assets that fit in to your AWS environment, tips and tools to…

25
Sep
2025

AJ Debole on the Business-Tech Divide, Breach Readiness, and AI Risks — API Security

AJ Debole is Field CISO at Oracle, but her journey began far from the corporate boardroom. After starting out in…

AI Comprehension Gaps: When Humans and AI See Different Things: · Joseph Thacker
25
Sep
2025

AI Comprehension Gaps: When Humans and AI See Different Things: · Joseph Thacker

There’s an AI Security and Safety concept that I’m calling an “AI Comprehension Gap.” It’s a bit of a mouthful,…

The Desync Delusion: Are You Really Protected Against HTTP Request Smuggling?
24
Sep
2025

Welcome to AI pentesting – add on-demand AI assistance directly to your workflow with new, agentic Burp AI capabilities | Blog

Amelia Coen | 24 September 2025 at 14:17 UTC Whether you’re navigating a client pentest or chasing a bounty target,…

23
Sep
2025

AI Index

AI Index ​ A comprehensive collection of artificial intelligence research, frameworks, and implementation guides spanning technical architecture, economic impact, and…

23
Sep
2025

Cybersecurity Index

Cybersecurity Index ​ A comprehensive collection of security research, frameworks, and methodologies developed over two decades in information security, covering…

Thoughts on Charlie Kirk's Assassination
23
Sep
2025

Thoughts on Charlie Kirk’s Assassination

First some main points: I’m highly disturbed by the whole thing I differed with Kirk on tons of his politics…