Resources

White papers

Discover our educational and thought-provoking white papers and reports, covering industry research, thought leadership, and security best practices.Join our live trainings covering the Invicti Application Security Platform and a variety of web application security-related topics.

white papers

API vulnerability testing in the real world

Implementing A DAST-First AppSec Program with Invicti

Gartner® Innovation Insight: Application Security Posture Management (ASPM): From Tool Sprawl to Unified Risk Visibility

The Future of AppSec: Applying AI to Minimize Risk and Protect Applications

Modernizing Application Security to Scale for Cloud-Native Development

Cover Your APIs – Securing Your Hidden Web Attack Surface

Web Application Security Without Compromise: A Buyer’s Guide

eBook: Welcome to modern web application security

Prompt Injection Attacks on Applications That Use LLMs

Blending Speed With Accuracy: The Benefits of Modern Security Testing Tools

Application security according to ISO 27001

How Invicti generates proof to avoid false positives

Invicti bolsters secure software development with automated application security

New data: 1.7 million scans, 1,700 customers, one Invicti AppSec Indicator for Spring 2023

New Vulnerability Found: Executive Overconfidence

Exploiting path traversal vulnerabilities in Java web applications

AppSec Indicator Fall 2022 Edition: Tuning Out AppSec Noise is All About DAST

Security at the Speed of Software: DAST in the SDLC

Flexible Deployment Options with Invicti Scan Agents

The Invicti AppSec Indicator, Spring 2022 Edition: Worrisome Vulnerability Trends in the Race to Innovation

False Positives in Web Application Security – Facing the Challenge

Enterprise Web Application Security Best Practices: How to Build a Successful AppSec Program

Web Application Security or Network Security: Do You Have to Choose?

How to Secure Thousands of Websites with a Small Security Team

Security Cookies: Cookie Attributes and Vulnerability Guide

Deobfuscating JavaScript Code: A Steam Phishing Website

Definitive Guide to Same-origin Policy (SOP)

Technical papers

Discover technical application security resources by the Invicti security research team, covering application security testing, reference materials on web security fundamentals, and original research.

Technical papers

Prompt Injection Attacks on Applications That Use LLMs

Technical papers

The Future of AppSec: Applying AI to Minimize Risk and Protect Applications

Technical papers

Modernizing Application Security to Scale for Cloud-Native Development

Technical papers

Good Habits of Bad Actors

Technical papers

Implementing A DAST-First AppSec Program with Invicti

Technical papers

DAST: The CISO's Security Posture Gauge

Technical papers

API vulnerability testing in the real world

Technical papers

Application security according to ISO 27001

Technical papers

Blending Speed With Accuracy: The Benefits of Modern Security Testing Tools

Prove vulnerabilities, remediate faster with Invicti

Experience the future of AppSec