Software Alternatives, Accelerators & Startups

SecurityTrails VS Detectify

Compare SecurityTrails VS Detectify and see what are their differences

SecurityTrails logo SecurityTrails

Dive into our data, search now! We offer robust APIs & data services for Security Teams worldwide.

Detectify logo Detectify

Detectify provides a user friendly and thorough web security scan that allows you to focus 100% on web development.
Not present
  • Detectify Landing page
    Landing page //
    2023-07-10

Detectify

Release Date
2012 January
Startup details
Country
Sweden
City
Stockholm
Founder(s)
Fredrik Nordberg Almroth
Employees
10 - 19

SecurityTrails features and specs

  • Comprehensive Data Collection
    SecurityTrails provides extensive data on domain names, IP addresses, and DNS records, which helps in cybersecurity investigations and threat intelligence.
  • Historical DNS Records
    Offers access to historical DNS records, which is valuable for tracking changes over time and understanding the evolution of threats.
  • API Access
    Provides an API that allows integration with other tools and systems for automated data retrieval and analysis.
  • User-friendly Interface
    Features an intuitive and easy-to-use interface that simplifies the process of searching and analyzing data.
  • Risk Assessment Features
    Includes tools for assessing the risk profile of a domain, which can aid in proactive cybersecurity measures.

Possible disadvantages of SecurityTrails

  • Cost
    SecurityTrails can be expensive for smaller organizations, as access to its full range of features requires a paid subscription.
  • Data Overload
    The comprehensive data can be overwhelming for users who do not have the expertise or resources to analyze it effectively.
  • Learning Curve
    Though it has a user-friendly interface, there is still a learning curve associated with utilizing its full potential, especially for new users.
  • Limited Free Plan
    The free plan offers limited functionality and access, which might not be suitable for users needing more extensive data.

Detectify features and specs

  • Comprehensive Security Analysis
    Detectify offers a wide range of security scanning features that allow users to identify vulnerabilities in their web applications thoroughly.
  • Automated Scanning
    Detectify automates the vulnerability scanning process, reducing the need for manual intervention and allowing for more efficient security management.
  • Regular Updates
    The platform is continuously updated with the latest security vulnerabilities, ensuring that users are protected against emerging threats.
  • Easy Integration
    Detectify can be easily integrated into existing workflows and tools, which makes it convenient for teams to incorporate it into their development pipelines.
  • User-friendly Interface
    The platform is designed with a user-friendly interface that makes it accessible for users with varying levels of technical expertise.
  • Detailed Reports
    Detectify provides detailed reports on vulnerabilities that include descriptions, risk levels, and remediation steps to help users address issues efficiently.

Possible disadvantages of Detectify

  • Cost
    For small businesses or individual developers, the cost of using Detectify may be prohibitive compared to other tools available on the market.
  • Limited Customization
    Although Detectify provides comprehensive scanning features, some users may find the customization options for scanning and reporting to be limited.
  • False Positives
    As with many automated scanning tools, Detectify may produce false positives, which can require additional time and resources to verify and resolve.
  • Depends on External Knowledge Base
    Detectify relies on its external database for identifying vulnerabilities. This means any delays or issues in updates might impact the timely identification of new threats.
  • Network Scan Limitations
    Detectify focuses primarily on web application security, which may not fully address network-level vulnerabilities or provide holistic infrastructure security.

Analysis of SecurityTrails

Overall verdict

  • SecurityTrails is a solid and widely respected platform for DNS, domain, and IP intelligence, offering deep historical data and a robust API that make it valuable for security research and threat intelligence work.

Why this product is good

  • Extensive historical DNS and domain records that let you track changes over time
  • Powerful API and querying tools that integrate well into automated security workflows
  • Comprehensive data on subdomains, WHOIS, IP addresses, and SSL certificates
  • Trusted by security professionals for attack surface mapping and threat investigation
  • User-friendly interface alongside developer-focused programmatic access

Recommended for

  • Security researchers and threat intelligence analysts
  • Penetration testers and red teams performing reconnaissance
  • Organizations conducting attack surface management and asset discovery
  • Developers building tools that require DNS and domain intelligence data
  • Incident response teams investigating malicious infrastructure

SecurityTrails videos

SecurityTrails Threat Intelligence Review | My Usage Experience

More videos:

  • Review - Cisco SecureX and SecurityTrails Integration

Detectify videos

Detectify Crowdsource | Meet the Hacker-Gerben Janssen van Doorn

More videos:

  • Demo - Detectify Demo: Get started with Detectify
  • Review - A complete video walkthrough of the Detectify tool

Category Popularity

0-100% (relative to SecurityTrails and Detectify)
Cyber Security
21 21%
79% 79
Web Application Security
0 0%
100% 100
Security & Privacy
100 100%
0% 0
Security
15 15%
85% 85

User comments

Share your experience with using SecurityTrails and Detectify. For example, how are they different and which one is better?
Log in or Post with

Social recommendations and mentions

Based on our record, Detectify should be more popular than SecurityTrails. It has been mentiond 4 times since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.

SecurityTrails mentions (1)

  • Ask HN: How did internet discover my subdomain?
    I'm having the same issue. https://securitytrails.com/ also had my "secret" staging subdomain. I made a catch-all certificate, so the subdomain didn't show up in CT logs. It's still a secret to me how my subdomain ended up in their database. - Source: Hacker News / over 1 year ago

Detectify mentions (4)

  • What are the actual security implications of port forwarding?
    Detectify once made an offer of making free scans which I took them up on. There are plenty of free Content Security Policy (CSP) and other vulnerability checkers around such as Observatory or Pentest. Shields UP!! Will identify which ports you have open. Source: over 2 years ago
  • Ask HN: Who is hiring? (February 2022)
    Detectify | Community Manager, Crowdsource | REMOTE (Offices in Boston, US & Stockholm, Sweden. We help with relocation if wanted) https://detectify.com/ We are a cyber security company in the industry, and more specifically the EASM (External Attack Surface Monitoring) space by automating and scaling the knowledge of hundreds of ethical hackers through our SaaS platform. Currently through our unique to Detectify... - Source: Hacker News / over 4 years ago
  • DAST in Gitlab
    A concept-level idea would be this: 1) For your staging/UAT environment pipeline stages, add a "DAST scan" step, eg. With Detectify (which also has an API accommodating this need) 2) I'd assume, independently from the DAST scan, you ran some tests on UAT. Allow the scan to complete during the time it takes to run your UAT tests. After that, you'll get a report (automated or not) from your scanner. 3) When... Source: about 5 years ago
  • Subdomain Takeover: Ignore This Vulnerability at Your Peril
    Subdomain takeover was pioneered by ethical hacker Frans Rosรฉn and popularized by Detectify in a seminal blogpost as early as 2014. However, it remains an underestimated (or outright overlooked) and widespread vulnerability. The rise of cloud solutions certainly hasn't helped curb the spread. - Source: dev.to / over 5 years ago

What are some alternatives?

When comparing SecurityTrails and Detectify, you can also consider the following products

DomainTools - Domain name research, including comprehensive Whois Lookup, Reverse Whois Lookup and Whois History.

Intruder - Intruder is a security monitoring platform for internet-facing systems.

WhoisXML API - Domain, IP, and DNS data provider

Probe.ly - Intuitive and easy-to-use webapp vulnerability scanner

IP Ninja - Advanced Network Intelligence API featuring enriched Reverse IP lookups, historical hostname mapping, and fully parsed WHOIS data for IPs and domains. Built for security researchers and developers seeking structured, actionable network insights.

Acunetix - Audit your website security and web applications for SQL injection, Cross site scripting and other...