Blog

AppSec Blog

Web Security

How to choose a DAST solution: An 8-step evaluation checklist for 2026

AI won’t kill AppSec – it will clarify what matters most

Latio 2026 report: AppSec buyers are moving to platforms and demanding real outcomes

Black-box testing: External security testing explained

23 NYCRR Part 500 compliance guide for the NYDFS cybersecurity regulation

What is SQL injection?

Best application security tools in 2026: A platform-first guide

Runtime application self-protection (RASP) tools: How to get the best out of them

AppSec failures we keep repeating – and how to break the cycle

Security Research

Security Labs

Security research in the age of AI tools: Django and Node.js SQL injection analysis

Security issues in vibe-coded web applications: 20,000 apps built and analyzed

When your AI chatbot does more than chat: The security of tool usage by LLMs

Behind the scenes: How Invicti built the security engine of the future

Next.js middleware authorization bypass vulnerability: Are you vulnerable?

First tokens: The Achilles’ heel of LLMs

Ducks, dinosaurs, and XSS: A little knowledge is a dangerous thing in security

Brainstorm tool release: Optimizing web fuzzing with local LLMs

System prompt exposure: How AI image generators may leak sensitive instructions

News

News

Latio 2026 Application Security Market Report recognizes Invicti as a leader and innovator

Invicti Security Awarded Best Place to Work Again

Invicti Acquires Kondukto to Deliver Proof-Based Application Security Posture Management

Invicti launches next-gen Application Security Platform with AI-powered DAST

Invicti Security Appoints Kevin Gallagher as President

Invicti Expands App Security Platform with Comprehensive API Security

Invicti Launches First AI-Enabled Predictive Risk Scoring for Application Security Testing

Invicti Launches New Integration with ServiceNow to Deliver Automated Workflows for Vulnerability Discovery Through Remediation

Women’s History Month: Meet Şeyma Kara, Invicti’s Director of Engineering

Product Docs & FAQs

Product Docs & FAQs

January 2023 update for Invicti Enterprise on-premises

Invicti improves discovery service and integrations

October 2022 update for Invicti Enterprise on-premises

September 2022 update for Invicti Enterprise On-Demand

Incorporating business logic to get the best out of DAST

August 2022 update for Invicti Enterprise On-Demand

May 2022 update for Invicti Enterprise On-Premises

How Invicti can help with AppSec compliance

Invicti Enterprise achieves WCAG 2.1 accessibility compliance