Escape DAST - Application Security Blog
Get a demo
  • Escape Platform
  • Case studies
  • Best Practices
  • Events
  • Community
Get a demo
Tagged

Security Research

A collection of 3 posts

Methodology: How we discovered over 2k high-impact vulnerabilities in apps built with vibe coding platforms
Security Research

Methodology: How we discovered over 2k high-impact vulnerabilities in apps built with vibe coding platforms

Hey there, With Halloween around the corner, what’s scarier for organizations than vulnerabilities in their web applications? And it's even scarier when the development of these applications is in the hands of users not familiar with security practices. This year, the Escape research team has focused on

  • Nohé Hinniger-Foray
  • Gwendal Mognier
  • Alexandra Charikova
Multiple authors Oct 29, 2025 • 10 min read
Fortune 1000 at risk: How we discovered 30k exposed APIs & 100k API vulnerabilities in the world’s largest organizations
Application Security

Fortune 1000 at risk: How we discovered 30k exposed APIs & 100k API vulnerabilities in the world’s largest organizations

Hey there! Next week, social media will be flooded with Thanksgiving feasts (and Black Friday deals). But before you dive into the holiday shopping madness, the Escape team has prepared a special treat for you—not a Black Friday deal on Escape, of course, but rather some impressive findings on

  • Alexandra Charikova
  • Maxence Lecanu
  • Quentin Lieumont
  • Gabriel Marquet
Multiple authors Nov 20, 2024 • 6 min read
Introducing the API Threat Landscape, a new resource for API security researchers
API Security

Introducing the API Threat Landscape, a new resource for API security researchers

Since 2022, Escape's security research team has been tracking API-related data breaches. We’ve decided to make our database public, providing detailed insights into primary attack vectors, threat actors, tools, and techniques. The database is updated every two weeks.

  • Alexandra Charikova
  • Mia Berthier
Alexandra Charikova, Mia Berthier Jul 22, 2024 • 4 min read
Escape DAST - Application Security Blog © 2025
  • Get a demo
  • Escape's proprietary business logic algorithm
  • Escape vs Invicti
  • Top DAST tools 2025
  • Case Studies
  • Learn how to test your GraphQL APIs
  • gRPC API Security
  • Top Qualys Alternative: Escape vs Qualys DAST
  • GraphQL Security
  • Escape vs Noname Security
  • GraphQL Armor
  • Escape Community
  • About Us
  • Privacy Policy
  • API Security Academy
  • API Gateway Security Best Practices
  • Top API security tools