Try our new research platform with insights from 80,000+ expert users

What is Invicti?

Get the report
Helped 871,829 peers since 2012

Featured Invicti reviews

Invicti mindshare

As of October 2025, the mindshare of Invicti in the Dynamic Application Security Testing (DAST) category stands at 11.7%, up from 10.5% compared to the previous year, according to calculations based on PeerSpot user engagement data.
Dynamic Application Security Testing (DAST) Market Share Distribution
ProductMarket Share (%)
Invicti11.7%
OpenText Dynamic Application Security Testing17.7%
HCL AppScan14.0%
Other56.6%
Dynamic Application Security Testing (DAST)

PeerResearch reports based on Invicti reviews

TypeTitleDate
CategoryDynamic Application Security Testing (DAST)Oct 25, 2025Download
ProductReviews, tips, and advice from real usersOct 25, 2025Download
ComparisonInvicti vs HCL AppScanOct 25, 2025Download
ComparisonInvicti vs Rapid7 InsightAppSecOct 25, 2025Download
ComparisonInvicti vs OpenText Dynamic Application Security TestingOct 25, 2025Download
Suggested products
TitleRatingMindshareRecommending
SonarQube Server (formerly SonarQube)4.0N/A81%117 interviewsAdd to research
Snyk4.0N/A100%49 interviewsAdd to research
 
 
Key learnings from peers

Valuable Features

Room for Improvement

Pricing

Popular Use Cases

Service and Support

Deployment

Scalability

Stability

Review data by company size

By reviewers
Company SizeCount
Small Business10
Midsize Enterprise3
Large Enterprise12
By reviewers
By visitors reading reviews
Company SizeCount
Small Business111
Midsize Enterprise93
Large Enterprise234
By visitors reading reviews

Top industries

By visitors reading reviews
Financial Services Firm
18%
Computer Software Company
14%
Manufacturing Company
9%
Government
8%
Retailer
5%
Educational Organization
4%
Comms Service Provider
3%
Healthcare Company
3%
University
3%
Energy/Utilities Company
3%
Legal Firm
3%
Construction Company
3%
Recreational Facilities/Services Company
3%
Transportation Company
2%
Performing Arts
2%
Real Estate/Law Firm
2%
Media Company
1%
Insurance Company
1%
Outsourcing Company
1%
Security Firm
1%
Wholesaler/Distributor
1%
Consumer Goods Company
1%
Non Tech Company
1%
Non Profit
1%
Leisure / Travel Company
1%
Hospitality Company
1%
Wellness & Fitness Company
1%
Logistics Company
1%
 
Invicti Reviews Summary
Author infoRatingReview Summary
Capability Center Leader, ETRM Platforms at Shell4.0I use Invicti for code scans to identify vulnerabilities and secrets, aiding our development teams in prioritizing tasks. Its proactive scanning is valuable, though its reporting needs improvement for enterprise-level insights. Invicti was my first such tool.
Senior Manager, Security Engineering at ESS4.0I've used Invicti for over three years for web and API testing; it's reliable in identifying vulnerabilities, though scan performance needs improvement. Setup is easy, support is good, and it's well-suited to our SSDLC and technology stack.
Cyber Security Engineer at Spartec5.0I primarily use Netsparker for website scanning, appreciating its interactive interface and scalability for securing large-scale applications. Previously, I used Tenable.io but found Netsparker more engaging. There's currently nothing I wish to improve about it.
CEO at Xcelliti3.5We use Invicti for vulnerability testing, especially in fintech. It excels in proof-based scanning with minimal false positives, integrates well with CI/CD pipelines, and offers good scalability. However, improvements are needed in user interface, documentation, and support.
Presales Consultant at Cyberwise4.0We use Invicti to detect vulnerabilities and ensure compliance with regulations like PCI DSS and GDPR. Its proof-based scanning reduces false positives and saves time. However, the costly licensing, lengthy scan times, and need for more integrations are drawbacks.
Senior Information Security Analyst at EastNets Holding Ltd.4.5We use Invicti to initialize applications before client release, deploying and scanning for specific server issues, language, and vulnerabilities. Its strengths are confirming access and SSL injection vulnerabilities and connecting with other security tools. However, report specificity needs improvement.
Senior Manager, Security Engineering at ESS4.0I use Invicti primarily for web application and API testing. I find its API testing and false positive checks valuable, though improvements in scanning time and authentication features are needed. I also use Burp Suite and HCL AppScan for specific tasks.
Manager at a consultancy with 10,001+ employees4.5We use Invicti for dynamic application security testing and pipeline integration. Its valuable feature is the baseline and incremental scanning, but improvements are needed in false positive and vulnerability analysis. We switched from AppScan due to Invicti's better rating.