Spacestation on a planet as the cover of Paged Out
Check out the latest edition of @pagedout.bsky.social featuring Doyensec's own Bartลomiej (Bartek) Gรณrkiewicz vibing on Reversing Python Bytecode, along with plenty of great articles!
pagedout.institute/download/Pag...
#appsec #doyensec #security #reversing #pagedout
24.02.2026 16:55 โ
๐ 2
๐ 0
๐ฌ 0
๐ 0
Testing APIs? Stop guessing what's running under the hood. Use InQL's Engine Fingerprinter in Burp to identify the #GraphQL stack in seconds and save yourself the trial and error.
blog.doyensec.com/2025/12/02/i...
github.com/doyensec/inql
#doyensec #appsec #inql #security #bugbountytips
19.02.2026 20:01 โ
๐ 1
๐ 0
๐ฌ 0
๐ 0
Hands typing on keyboard with sparks coming out of the monitor
Introducing SafeUpdater by Michael Pastor - A security-first update framework for Electron apps, built around explicit threat models, integrity and authenticity guarantees, and real attack mitigations. Check it out today!
blog.doyensec.com/2026/02/16/e...
#AppSec #Electron #doyensec #security
17.02.2026 15:50 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0
YouTube video by PROIDEA Events
CONFidence 2025: Szymon Drosdzol - API Authorization Antipatterns
If you missed our Szymon Drosdzol's presentation on "API Authorization Antipatterns" at CONFidence (@confidenceconf), or just want to see it again, it's your lucky day! The video is now available here: www.youtube.com/watch?v=Jje2.... Hope you enjoy it!
#appsec #doyensec #security
05.02.2026 20:16 โ
๐ 1
๐ 0
๐ฌ 0
๐ 0
Set your #xss hunting ๐ฏ on easy mode! In the latest edition of our Eval Villain video series, Dennis Goodlett demonstrates the time-saving power of the "needles" feature.
youtu.be/LI9QOuQDduE
#appsec #doyensec #bugbountytips #security
29.01.2026 16:27 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0
Sponsors
๐ฅณDoyensec is proud to announce our sponsorship of the UC Davis Cyber Security Club!๐ป๐
We're committed to supporting the next generation of #cybersecurity talent ๐๐ง
daviscybersec.org/sponsors/
#appsec #doyensec #infosec #ucdavis
27.01.2026 17:48 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0
In our latest blog post, Szymon Drosdzol provides an in-depth walkthrough of using the #frida toolkit to demonstrate the right way to intercept OkHTTP traffic. This is essential knowledge for #android security research!
Check it out: blog.doyensec.com/2026/01/22/f...
#appsec #doyensec #security
23.01.2026 02:09 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0
๐ We'd like to welcome our newest intern (and second Luca), Luca Molteni! We're confident he'll be the next amazing engineer to emerge from our proven internship program. ๐
#appsec #doyensec #security #internship
19.01.2026 16:30 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0
๐ขJust published - the third video in our series on Eval Villain. Our Dennis Goodlett walks through using it to find ๐ a DOM XSS to demonstrate its functionality. Check it out today!
youtu.be/Hp7TexA6vFg
#appsec #doyensec #security #evalvillain #xss
15.01.2026 16:49 โ
๐ 0
๐ 0
๐ฌ 0
๐ 1
In the second post on Eval Villain, @bemodtwz walks through the quick & easy setup and its configuration. Check it out & start finding those client-side vulnerabilities today!
youtu.be/-hIA5uLNFck
Download: github.com/swoops/eval_...
#appsec #doyensec #security
08.01.2026 19:49 โ
๐ 0
๐ 0
๐ฌ 0
๐ 1
Happy New Year from the #Doyensec team!
30.12.2025 21:23 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0
๐ฅ๐ค A toast to 9 years of #Doyensec!
Nine years of pushing application security forward, breaking things so others donโt, & helping teams build with security from day one. ๐ธ
Cheers to the bugs weโve found, the apps weโve strengthened, & the many secure years still to come. ๐
19.12.2025 15:01 โ
๐ 0
๐ 1
๐ฌ 0
๐ 0
Happy Holidays everyone!โ๏ธ Weโre taking a break next week for our annual shutdown to celebrate another successful year and give our team time to recharge. ๐
#doyensec #appsec #security
15.12.2025 15:56 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0
YouTube video by Doyensec
Introducing Eval Villain
Weโre excited to share the first video in our Eval Villain series from our Dennis Goodlett.
This powerful security tool is designed to uncover client-side vulnerabilities and help defenders spot risky patterns.
youtu.be/2dUoOyYKkzU
#doyensec #appsec #security #evalvillain #xss
09.12.2025 23:54 โ
๐ 0
๐ 0
๐ฌ 0
๐ 1
InQL v6.1.0 Just Landed with New Features & Contribution Swag! ๐ ยท Doyensec's Blog
InQL v6.1.0 Just Landed with New Features & Contribution Swag! ๐
If you're interested in contributing to this awesome #FOSS security project for #graphql, we're rewarding contributions!
You can learn about the latest release here: blog.doyensec.com/2025/12/02/i... and check out the project here: github.com/doyensec/inql
#doyensec #security #opensource
02.12.2025 18:36 โ
๐ 2
๐ 0
๐ฌ 0
๐ 0
๐ inQL v6.0.1 is out!
Our GraphQL security tool got big upgrades.โก
โข Schema Brute-Forcer
โข Server Engine Fingerprinting
โข Automatic Variable Generation
โข Performance boosts & other improvements
Details: blog.doyensec.com/2025/12/02/i...
#doyensec #graphql #appsec #security
02.12.2025 18:36 โ
๐ 3
๐ 0
๐ฌ 1
๐ 0
Weโre proud that #Doyensec was selected to help secure the IETF โ and to share the first batch of vulnerabilities we uncovered. Read more in the newly published advisories ๐
github.com/ietf-tools/x...
github.com/ietf-tools/x...
#appsec #security
13.11.2025 19:34 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0
Weโre super excited to welcome Yassine Bengana to the Doyensec team! ๐
Heโs bringing serious AppSec skills and great vibes โ canโt wait to see the cool stuff weโll break (and build) together ๐ฅ
#AppSec #infosec #Doyensec
05.11.2025 19:00 โ
๐ 1
๐ 0
๐ฌ 0
๐ 0
The #Doyensec team is back from another great retreat! This time we toured Ireland ๐ฎ๐ช and even met a working ๐ sheep dog ! What a great chance for our remote team to connect IRL! Also, a big thank you ๐ to our tour guide Antonio!
#security #appsec #remote
30.10.2025 18:43 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0
Going to be near Dublin this Wednesday (10/22)? come join #Doyensec for an evening of drinks ( ๐ป/โ ), networking, and great conversations about all things #appsec & #cybersecurity.
RSVP here: docs.google.com/forms/d/1fa4...
#Infosec #Pwn2Own #BSidesDublin #OWASPIreland #security
20.10.2025 14:53 โ
๐ 1
๐ 0
๐ฌ 0
๐ 0
SQUID-2025:2 Information Disclosure in Error handling
Due to a failure to redact HTTP Authentication credentials
Squid is vulnerable to an Information Disclosure attack.
__________________________________________________________________
###...
๐จ Just released - details on a serious vulnerability from our Leonardo Giovannini's research! An Information Disclosure allowing a remote attacker to identify security tokens/credentials when #squid is used for load balancing.๐จ
#doyensec #appsec #security #vulnerability
github.com/squid-cache/...
17.10.2025 17:23 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0
If you want, you can also RSVP via email at dublin@doyensec.com
14.10.2025 16:12 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0
People chatting about appsec over drinks
Live in or passing through #Dublin enroute to #pwn2own ? If you're in #appsec join #doyensec to talk #security over drinks (๐บ or โ๏ธ) Oct. 22nd! Want to talk about our job openings or upcoming projects, that's great too!
RSVP here: docs.google.com/forms/d/1fa4...
cc: @bsidesdublin.bsky.social
14.10.2025 15:33 โ
๐ 1
๐ 0
๐ฌ 1
๐ 1
In our final ksmbd research post @73696e65.bsky.social provides a detailed walkthrough for exploiting a local privilege escalation vulnerability. If you're interested in learning more about exploitation on modern systems - check it out!
blog.doyensec.com/2025/10/08/k...
#doyensec #appsec #security
08.10.2025 16:26 โ
๐ 1
๐ 0
๐ฌ 0
๐ 0
Paged Out!
Deeply technical zine. And it's free.
๐งYour wish has been granted - the latest @pagedout.bsky.social edition is out! In it, our Szymon Drosdzol takes a quick look at #vibecoding, walking through the creation of an AI agent ๐ค. Check it out today!
#doyensec #appsec #ai #Security
pagedout.institute
06.10.2025 14:59 โ
๐ 2
๐ 0
๐ฌ 0
๐ 0
๐ข Our latest blog post shows why VBScriptโs Randomize + Rnd are terrible for cryptographic token generation. See how attackers can easily recover seeds and secrets.
๐ blog.doyensec.com/2025/09/25/y...
#doyensec #appsec #security #crypto
25.09.2025 16:40 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0
We'd like to welcome our newest addition Marcelino "Marce" Siles Rubia! Another success story from our #internship program! The future of #appsec is looking bright ๐ at #doyensec !
04.09.2025 18:53 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0