Show rating breakdown
Save to My Lists
Claimed
Claimed

Top Rated Detectify Alternatives

Detectify Reviews & Product Details - Page 3

Detectify Overview

What is Detectify?

Detectify sets a new standard for advanced application security testing, challenging traditional DAST by providing evolving coverage of each and every exposed asset across the changing attack surface. AppSec teams trust Detectify to expose how attackers will exploit their Internet-facing applications. The Detectify platform automates continuous real-world, payload-based attacks fuelled by its global community of elite ethical hackers into its own expert-built engines, exposing critical weaknesses before it's too late. The Detectify solution includes: - Automated discovery of known and unknown digital assets via domain & cloud connectors - Continuous coverage (24/7) of every corner of the attack surface with dynamic testing. Not just predefined targets - 100% payload-based testing fuelled by elite ethical hackers for a high signal-to-noise ratio - Distributed coverage across an unmatched array of relevant technologies - Actionable remediation tips for software development teams - Team functionality to easily share reports - Powerful integrations platform to prioritize and triage vulnerability findings onward to development teams -Advanced API functionality -Capabilities to set custom attack surface security policies

Detectify Details
Languages Supported
English
Show LessShow More
Product Description

Detectify is a SaaS based website security service that analyzes and monitors the security level of a user's website by applying a broad range of emulated hacker attacks and provide report that describes the identified vulnerabilities and their potential risk in the hands of malicious hackers.

How do you position yourself against your competitors?

Detectify is the only automated EASM solution powered by a hacker community. Continuously secure the growing attack surface and detect vulnerabilities in time with Detectify.


Seller Details
Seller
Detectify
Year Founded
2013
HQ Location
Stockholm, Sweden
Twitter
@detectify
11,409 Twitter followers
LinkedIn® Page
www.linkedin.com
107 employees on LinkedIn®

CW
Overview Provided by:

Recent Detectify Reviews

Verified User
A
Verified UserMid-Market (51-1000 emp.)
3.5 out of 5
"One of the best in market but can be improved for certain technologies"
Detectify's ability to facilitate dynamic application security testing (DAST) is what really grabs my attention. Its very effective particularly fo...
PE
Paul E.Small-Business (50 or fewer emp.)
3.5 out of 5
"Great tool for web-app security"
It is very comprehensive with lots of features to test security and can be automated and tailoured easily to your needs. It has excellent document...
Arkadiusz K.
AK
Arkadiusz K.Small-Business (50 or fewer emp.)
5.0 out of 5
"Vulnerability scans made easy"
Automated approach to testing vulnerabilities which saves a lot of time for the team. No need to track all dependencies manually.
Security Badge
This seller hasn't added their security information yet. Let them know that you'd like them to add it.
0 people requested security information

Detectify Media

Detectify Demo - Continuously spot changes with the attack surface overview
Continuously spot changes with the attack surface overview
Detectify Demo - Create custom policies directly from your filtered view of the attack surface
By enabling granular control at the domain level, Detectify helps you to enforce security standards more effectively and reduce the risk of overlooked breaches, ensuring that your valuable time and attention are focused on the most critical threats.
Detectify Demo - The Domains page
The Domains page provides your team with the most powerful and flexible attack surface insights. Try it out by filtering domain data adding your own values or using recommended filters, directly creating custom policies, or visually exploring your domain data with the network graph.
Detectify Demo - An easy-to-use tool to immediately start scanning
Detectify doesn’t require hours of work to onboard and manage. Get started in no-time using cloud connectors and easily integrate results into your existing workflows. Get the most out of the platform with powerful integrations and API.
Detectify Demo - Automated attacks fuelled by elite ethical hackers are built into our expert-built engines
From pioneering subdomain takeover tests to crowdsourcing vulnerability research, including hundreds of 0-days, we have always sought to automate human ingenuity. We build our engines so that we can move at speed and scale.
Answer a few questions to help the Detectify community
Have you used Detectify before?
Yes

51 Detectify Reviews

4.5 out of 5
The next elements are filters and will change the displayed results once they are selected.
Search reviews
Popular Mentions
The next elements are radio elements and sort the displayed results by the item selected and will update the results displayed.
Hide FiltersMore Filters
The next elements are filters and will change the displayed results once they are selected.
The next elements are filters and will change the displayed results once they are selected.
51 Detectify Reviews
4.5 out of 5
51 Detectify Reviews
4.5 out of 5

Detectify Pros and Cons

How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Cons

Overall Review Sentiment for DetectifyQuestion

Time to Implement
<1 day
>12 months
Return on Investment
<6 months
48+ months
Ease of Setup
0 (Difficult)
10 (Easy)
Log In
Want to see more insights from verified reviewers?
Log in to view review sentiment.
G2 reviews are authentic and verified.
LH
Communications Manager
Small-Business(50 or fewer emp.)
More Options
Validated Reviewer
Verified Current User
Review source: Seller invite
Incentivized Review
What do you like best about Detectify?

The Deep Scan was impressively easy to use once I got through the asset verification process. The scan itself took a long time (about 7 hours), but I was very pleased to see all of the vulnerabilities laid out clearly and ranked by severity.

As a nonprofit organization where I am the only person managing the website, this is a game-changer in terms of securing our web presence. The Deep Scan showed vulnerabilities that I never would have known about without it. I also appreciate that each vulnerability links to more information, giving me the best possible chance to fix these issues on my own. Review collected by and hosted on G2.com.

What do you dislike about Detectify?

I had a little trouble getting verified at the beginning and the instructions weren't very helpful on how to use a DNS text record (more specifically, I didn't know to use "@" under host so it wasn't working properly). Maybe that is because the target audience should already know how to do this?

I'm not a developer (although I do have some programming experience), so I'm not 100% certain I will be able to make all of the necessary changes. I could see that being an issue for other organizations that lack a person with any technical know-how. Review collected by and hosted on G2.com.

Recommendations to others considering Detectify:

Detectify will help you identify potential areas where your website is vulnerable, but you will likely need a developer or security expert to help implement the needed fixes. Review collected by and hosted on G2.com.

What problems is Detectify solving and how is that benefiting you?

I am using the vulnerability report to research ways to make our website more secure. Our website has been hacked many times over the past year, and Detectify allows me to clearly see where the potential problems are. These are issues that I would not have been able to identify on my own. Review collected by and hosted on G2.com.

Verified User in Consumer Electronics
AC
Small-Business(50 or fewer emp.)
More Options
Validated Reviewer
Verified Current User
Review source: G2 Gives Campaign
Incentivized Review
What do you like best about Detectify?

The digest emails when Detectify finishes scanning my products. It's super easy to look and see the status of them in the morning. Review collected by and hosted on G2.com.

What do you dislike about Detectify?

The stress added to our servers. When running a scan, it makes tens of thousands of requests on our servers. Maybe it's a misconfiguration, but we needed to downsize the frequency from once a day to once a week. Review collected by and hosted on G2.com.

What problems is Detectify solving and how is that benefiting you?

I have noticed some security issues in our servers since we started using them. Review collected by and hosted on G2.com.

FA
Digital Security Software Engineer
Enterprise(> 1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: Seller invite
Incentivized Review
What do you like best about Detectify?

I'm going to give a summary of the best features :

* Good Product, that is able to provide interesting results ;

* Good and interesting Features ;

* Fast improvements into the Platform ;

* The UI is vert friendly and confortable, with a good look and feel ;

* The Service Support is very good ;

* The scans are easy to configure and to be maintained ;

* There are a few option to perform authenticated scans, this is great ;

* The on-boarding of the assets it's very fast and clear ; Review collected by and hosted on G2.com.

What do you dislike about Detectify?

The maturity level of the tool is not great, there are some customisation and feature to facilitate the Customer interaction with the tool that are missing, for example :

* Change or define the Risk ranting ;

* Make particular filter using logical operators as OR,AND,INCLUDE,EXCLUDE,NOT are missing ;

* The tagging have been recently added but something is still tricky ;

* It is not possible give the acknowledge for the findings ;

* It is not possible to define an issue as Risk Accepted ;

* The pause/resume option is missing ;

* There isn't the option to have a continuous scan mode, with the option to configure pauses periods (for example do not scan between 8 to 9) ;

* A global scheduler to define the scans default configuration is missing ;

* It is not possible to create scan configuration templates to be applied to the assets ; Review collected by and hosted on G2.com.

Recommendations to others considering Detectify:

I would recommend this tool and the service to everyone that needs to discover and monitor the security posture of their Buisness Review collected by and hosted on G2.com.

What problems is Detectify solving and how is that benefiting you?

Continuous web security scanning and monitoring for subdomain takeovers. Detectify helps us find both low-hanging fruits and more severe issues like XSS and subdomain takeover. Review collected by and hosted on G2.com.

Response from Maja Grywenz of Detectify

Hi Fransesco,

Thanks for your review. We are glad to hear that you are happy with Detectiy. Many thanks for your feedback and improvement suggestions and some of them are part of our roadmap. Regarding the tagging, we would love to hear more about your experiences. Please send an email to support@detectify. com so we can discuss this further.

Kind regards,

Detectify

AV
Manager Development
Small-Business(50 or fewer emp.)
More Options
Validated Reviewer
Verified Current User
Review source: Seller invite
Incentivized Review
Business partner of the seller or seller's competitor, not included in G2 scores.
What do you like best about Detectify?

Detectify is a very well performing vulberability scanner.

The simplicity how it works and the many checks that are done when performing a deep scan.

Very light weight and very good.

The interface is very intuitive and there are many many integrations possible with Trello, E-mail, Jira, opsGenie, Paperduty, Zapier, webhooks, splunk, now, API Review collected by and hosted on G2.com.

What do you dislike about Detectify?

It's not possible to create teams when not having the enterprise subscription. This ends up in a problem that every single team member is emailed when a scan is finished. That's not needed at all. It would be very nice to have this as a key feature in all the subscriptions. Beside that it is now impossible to add a client user in the team because he can see all of the other scan results as well. This is not very nice and it would also therefore be nice that Teams will be a default feature. For us this was the only reason to question the use of Detectify. Review collected by and hosted on G2.com.

Recommendations to others considering Detectify:

When you are searching for a lean and mean vulnerability scanner, this is a good pick. Review collected by and hosted on G2.com.

What problems is Detectify solving and how is that benefiting you?

With Detectify we are able to scan more often, liken in daily, now without high hireing a high cost pen-tester each time. We still use pen-testing once in a while to do a real deep scan but Detectify gives us already a good sight of how the security is performing withing our applications. Review collected by and hosted on G2.com.

Response from Maja Grywenz of Detectify

Hi Arjan, thanks for your review. We are glad to hear that you are happy with Detecitfy. Please send an email to support@detectify.com and we can discuss how we can help you with the team functionality.

Kind regards,

Detectify

Verified User in Higher Education
AH
Enterprise(> 1000 emp.)
More Options
Validated Reviewer
Review source: Seller invite
Incentivized Review
What do you like best about Detectify?

Gets the job done. Deep scan is a good feture but i like the Surface Monitor more. Review collected by and hosted on G2.com.

What do you dislike about Detectify?

Bad user interface, needs a rework to make it cleaner and easier to use Review collected by and hosted on G2.com.

What problems is Detectify solving and how is that benefiting you?

Help us scan our websites in reference and production environments. Review collected by and hosted on G2.com.

Michael D.
MD
Head of Infrastructure and Data team
Small-Business(50 or fewer emp.)
More Options
Validated Reviewer
Verified Current User
Review source: Seller invite
Incentivized Review
What do you like best about Detectify?

How easy is it to configure our scan capabilities and our website. Additionally how easy it is to view a report and take actions on top of it. Overall Detectify is a good friend that helps us to perform better and never run behind of best security practices Review collected by and hosted on G2.com.

What do you dislike about Detectify?

I miss a feature to validate REST APIs which nowadays is a pattern everywhere. Review collected by and hosted on G2.com.

What problems is Detectify solving and how is that benefiting you?

Doing weekly security checks to my website and getting a decent and proper report with a severity labeling in place. This has helped me to focus on other things that also enable me to perform best when Detectify scans. Review collected by and hosted on G2.com.

Verified User in Financial Services
UF
Enterprise(> 1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: Seller invite
Incentivized Review
What do you like best about Detectify?

Its easy to use and reports on relevant vulnerabilities. There are little false positives. It is great that you must verify ownership of a domain first. The web-interface works well and looks great on mobile phones. Great that the tools integrates with slack etc. I also like the crawler and that you can download the crawled URLs. Detectify is great at sorting out duplicates. When it comes to reporting, the tool groups the findings very well, makes it very easy to navigate. Review collected by and hosted on G2.com.

What do you dislike about Detectify?

Difficult to change subdomains/profiles to scan.

All subdomains of a domain should be included in the profile, because it shouldn't matter whether a website puts their content on www.example.com/application1 or application1.example.com.

It would have been great if it was possible to download a log of all requests sent. That way it would be easier to troubleshoot and use the tool for further manual pentesting.

Would be great if Detectify was a little bit more tunable. There are little configuration options compared to other tools in the market. A more advanced configuration should be possible where one can tune. Review collected by and hosted on G2.com.

Recommendations to others considering Detectify:

First you need to find your assets, although Detectify has a web monitoring tool and port scan functionality its main focus is web application scanning. You first need to find all your web applications to load into the tools, with other tools that focus on recon. Review collected by and hosted on G2.com.

What problems is Detectify solving and how is that benefiting you?

Detectify reduces the risk of web application vulnerabilities being undetected in seamless way. It saves time compared to many other tools because it has little amount of false positives. Our organization receive great details on the vulnerabilities in our web applications that we have present on the internet, and can use this information to tune our organization. Review collected by and hosted on G2.com.

Response from Yiğitcan Aydın of Detectify

Hi,

Thank you for your review and for all the feedback. Glad to hear about your positive experiences with Detectify.

Regarding including all the subdomains, we consider every endpoint for a profile to be a single web application and design our scanner accordingly. That enables us to accurately fingerprint technologies for scan profiles and run more relevant tests for the application and it helps us to reduce the number of false positives. That being said, Asset Monitoring is a great option to discover to cover a broader asset landscape.

Please feel free to share your thoughts on additional configuration options with support@detectify.com an we'll make sure it ends up in right hands.

Kind regards,

Detectify

Verified User in Computer Software
CC
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: Seller invite
Incentivized Review
What do you like best about Detectify?

Asset Monitor allows me to know what I'm exposing to the internet. It also spots new vulnerabilities as soon as they are released.

Also, with deep scan I can schedule an in-depth analysis of a specific asset.

In my opinion, It doesn´t replace Ethical Hacking, but it does excellent work maintaining a great secure posture. Review collected by and hosted on G2.com.

What do you dislike about Detectify?

Lack of on-premise version: It would be great to have the ability to scan internal networks Review collected by and hosted on G2.com.

What problems is Detectify solving and how is that benefiting you?

With Detectify Deep Scan, I´m solving the problem of spotting the occurrence of new vulnerabilities as they arise (CVE, etc). It also spots misconfigurations and other day-to-day operational errors that could lead to vulnerabilities or information leakage. Review collected by and hosted on G2.com.

Verified User in Financial Services
UF
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: Seller invite
Incentivized Review
What do you like best about Detectify?

It's automated and doesn't require much manual work. Always keeps up to date with new vulnerabilities due to Bug Bounty programmes etc.

Easily set-up, light weight and the scan profiles have highly customizable scan patterns and options.

Very thorough scanning with extensive crawling.

Beautiful web-GUI that is continously updated. It also has a lot of integrations.

A lot cheaper than hiring red team consultants, even though it doesn't replace them, Detectify provides regular check-ups on our sites.

Swedish company Review collected by and hosted on G2.com.

What do you dislike about Detectify?

Team- and user access structure needs some work, it is hard to manage a large organization with many teams. No overview feature for administrators, you have to manage every team separately.

Reporting feature could also need some improvements, it is very extensive to the point that it contains almost too much information. I would like a report of all scan profiles to get the "overall security posture" kind of view. Review collected by and hosted on G2.com.

What problems is Detectify solving and how is that benefiting you?

Detectify has discovered long lost portals and sites that were forgotten by devs, and given us the information needed to remediate these vulnerabilities.

This is a very valuable tool for our security dpt. in the way that we have evidence of the vulnerabilities shown and can pressure the teams involved to fix these.

Automation is key, and this tool is VERY good in the way that it is highly customizable in when and how often each site should be scanned.

Overall , we have achieved a better security posture towards the internet. Review collected by and hosted on G2.com.

Ted M.
TM
President
Small-Business(50 or fewer emp.)
More Options
Validated Reviewer
Review source: Seller invite
Incentivized Review
What do you like best about Detectify?

Detectify provides a powerful tool that I recommend to all of my clients for ensuring that their web site and online presence is secured. While nothing will replace a true penetration test; Detectify provides a great weekly scan to ensure that your web site is secured against the most common threats. It has an easy to use interface, reporting that is interpretable by both the technical and non-technical alike, and best of all - it's affordable for what you get! Review collected by and hosted on G2.com.

What do you dislike about Detectify?

Detectify does its' own testing, as well as has a crowdsourced model to add things to its scanning platform. While it is very comprehensive, and I'm nit-picking here, but I don't know anyone who wouldn't want to see more added. They update it almost weekly as it is - but more detections, the better!! Keep up the excellent work, Detectify! Review collected by and hosted on G2.com.

What problems is Detectify solving and how is that benefiting you?

Detectify Deep Scan provides my customers with a point-in-time score about their current security vulnerabilities, their risk (high, medium or low) and a score. This all makes it very easy to understand, and help prioritize what order in which they will be dealt with. Review collected by and hosted on G2.com.

Response from Maja Grywenz of Detectify

Hi Ted,

Thanks for your review. We are happy to hear that you are so satisfied with the Detectify service.

Kind regards,

Detectify