141 Followers
1 Following
216 Posts

Doyensec works at the intersection of software development and offensive engineering. We discover vulnerabilities others cannot, and help mitigate the risk.

https://doyensec.com

Websitehttps://doyensec.com
Bloghttps://blog.doyensec.com
Careershttps://www.careers-page.com/doyensec-llc

Did you know you can use #InQL to recreate #GraphQL schema even when the introspection query is disabled? Our Schema Bruteforcer ensures "hidden" doesn't actually mean "off-limits".

Find out more at:
https://blog.doyensec.com/2025/12/02/inql-v610.html
https://github.com/doyensec/inql

#doyensec #appsec #security

AuthN/Z is always a #security minefield & MCP adds even more complexity with agents, remote servers, and transitive trust.

This Teleport-sponsored deep dive breaks down attack vectors & why each auth step is a potential trust boundary.

🔗 https://blog.doyensec.com/2026/03/05/mcp-nightmare.html

#doyensec #appsec #ai

Check out the latest edition of @PagedOut featuring Doyensec's own Bartłomiej (Bartek) Górkiewicz vibing on Reversing Python Bytecode, along with plenty of other great articles!

https://pagedout.institute/download/PagedOut_008.pdf

#appsec #doyensec #security #reversing #pagedout

Testing APIs? Stop guessing what's running under the hood. Use InQL's Engine Fingerprinter in Burp to identify the #GraphQL stack in seconds and save yourself the trial and error.

https://blog.doyensec.com/2025/12/02/inql-v610.html
https://github.com/doyensec/inql

Introducing SafeUpdater by Michael Pastor - A security-first update framework for Electron apps, built around explicit threat models, integrity and authenticity guarantees, and real attack mitigations. Check it out today!

https://blog.doyensec.com/2026/02/16/electron-safe-updater.html

#AppSec #Electron #doyensec #security

Humans vs. AI? We put them to the test in our new post! We went head-to-head with AI tools to see who would win? Check it out today to see the results!

https://blog.doyensec.com/2026/02/03/outline-audit-q32025.html

#appsec #doyensec #outline #ai

In our latest blog post, Szymon Drosdzol provides an in-depth walkthrough of using the #frida toolkit to demonstrate the right way to intercept OkHTTP traffic. This is essential knowledge for #android security research!

Check it out today: https://blog.doyensec.com/2026/01/22/frida-instrumentation.html

#appsec #doyensec #security

🎉 We'd like to welcome our newest intern (and second Luca), Luca Molteni! We're confident he'll be the next amazing engineer to emerge from our proven internship program. 🚀

#appsec #doyensec #security #internship

Happy New Year from the #Doyensec team!

🥂🤖 A toast to 9 years of #Doyensec!

Nine years of pushing application security forward, breaking things so others don’t, & helping teams build with security from day one. 🍸

Cheers to the bugs we’ve found, the apps we’ve strengthened, & the many secure years still to come. 🎉