DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
An npm Package for AI Agent Orchestration Just Shipped With Its Front Door Unlocked. Here's What the CVE Actually Reveals.

An npm Package for AI Agent Orchestration Just Shipped With Its Front Door Unlocked. Here's What the CVE Actually Reveals.

11
Comments
4 min read
I Got Tired of Forgetting. So I Built PwnLog.

I Got Tired of Forgetting. So I Built PwnLog.

7
Comments 1
2 min read
The False Positive Tax: a 1:1 TP:FP analysis of eslint-plugin-security

The False Positive Tax: a 1:1 TP:FP analysis of eslint-plugin-security

Comments
11 min read
I Benchmarked 17 ESLint Security Plugins. Only One Found Every Vulnerability.

I Benchmarked 17 ESLint Security Plugins. Only One Found Every Vulnerability.

Comments
9 min read
Why we built AVE: a vulnerability standard for AI agents that CVE was not designed for

Why we built AVE: a vulnerability standard for AI agents that CVE was not designed for

Comments
4 min read
Solana Passkey Wallet: Replacing Seed Phrases with SIMD-0075

Solana Passkey Wallet: Replacing Seed Phrases with SIMD-0075

1
Comments
8 min read
How I built a zero-knowledge secret sharing tool

How I built a zero-knowledge secret sharing tool

Comments
5 min read
$5.4 Billion in Damage. 8.5 Million Machines Down. Three YAML Controls Would Have Prevented It. Here's the Structural Analysis.

$5.4 Billion in Damage. 8.5 Million Machines Down. Three YAML Controls Would Have Prevented It. Here's the Structural Analysis.

Comments
8 min read
Why most AI fails at IDOR (and how AMAS fixes it with causal reasoning)

Why most AI fails at IDOR (and how AMAS fixes it with causal reasoning)

1
Comments
2 min read
Lock Down Your Cloud Shares: A Beginner’s Guide to Azure Files Security.

Lock Down Your Cloud Shares: A Beginner’s Guide to Azure Files Security.

5
Comments 1
5 min read
AI guardrails are not security boundaries

AI guardrails are not security boundaries

Comments
4 min read
I'm not an ML engineer. I built one anyway.

I'm not an ML engineer. I built one anyway.

8
Comments
5 min read
How to Secure Your Multisig Wallet: Complete Hack Prevention Guide with Technical Analysis

How to Secure Your Multisig Wallet: Complete Hack Prevention Guide with Technical Analysis

Comments
3 min read
RAMPART Tests Your AI Agents in Dev. What Catches Malicious Tool Calls in Production?

RAMPART Tests Your AI Agents in Dev. What Catches Malicious Tool Calls in Production?

2
Comments
5 min read
Why I Didn't Use eval() in ObsidianWall's Policy Engine — And What I Built Instead

Why I Didn't Use eval() in ObsidianWall's Policy Engine — And What I Built Instead

Comments
6 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.