Detectify has expanded its application security testing platform with new API scanning features designed to help organizations identify and remediate vulnerabilities across their modern applications, reports SiliconANGLE. The update focuses on closing gaps created by incomplete API inventories, poor documentation, and the lack of unified testing approaches - challenges that are becoming more visible as compliance requirements like PCI DSS and SOC 2 mandate API security checks.The API scanner brings together discovered endpoints with user-provided data, creating a consolidated inventory and giving security teams the context needed to prioritize scans across the full API attack surface. By offering a single view, the tool helps reduce the guesswork that often slows down remediation efforts.Unlike static testing methods, the scanner uses artificial intelligence to randomize and rotate payloads with each run. This means scans remain dynamic and harder to predict, simulating real-world attack conditions. Combined with a large reference library of payloads, the tool can test at scale while covering a broad range of vulnerabilities.Detectify says the scanner addresses common risks outlined in the OWASP API Top 10, as well as issues like SQL injection, NoSQL injection, cross-site scripting, and insecure deserialization. Backed by venture funding of more than $42 million, the company continues to expand its platform with features that aim to give AppSec teams broader visibility and control across modern environments.




