DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Building a Secure Self-Hosted Observability Pipeline for an AI Evaluation Platform

Building a Secure Self-Hosted Observability Pipeline for an AI Evaluation Platform

1
Comments
8 min read
State of MCP Server Security: A 45-Server Scan

State of MCP Server Security: A 45-Server Scan

Comments 1
3 min read
I Found a P0 Auth Bypass by Testing What null Does to BCrypt

I Found a P0 Auth Bypass by Testing What null Does to BCrypt

Comments
1 min read
ToxicPanda 2.0 Chains VPN, Accessibility, and ADB

ToxicPanda 2.0 Chains VPN, Accessibility, and ADB

Comments
11 min read
Rate Limiting vs Throttling: What’s the Difference?

Rate Limiting vs Throttling: What’s the Difference?

2
Comments
12 min read
Everything you ever committed is the product

Everything you ever committed is the product

Comments
3 min read
Prompt injection defense: why you can't prompt your way out of it

Prompt injection defense: why you can't prompt your way out of it

Comments
3 min read
One Commerce Protocol, Two Interfaces: PWA for Humans and MCP for Agents

One Commerce Protocol, Two Interfaces: PWA for Humans and MCP for Agents

Comments
4 min read
Harden for the reader: three red flags an AppSec engineer hits on `git clone`

Harden for the reader: three red flags an AppSec engineer hits on `git clone`

Comments
5 min read
Trusted AI Agent Transactions, Part 3: SPIRE Workload Identity

Trusted AI Agent Transactions, Part 3: SPIRE Workload Identity

Comments
2 min read
Trusted AI Agent Transactions, Part 2: PingFederate Token Exchange

Trusted AI Agent Transactions, Part 2: PingFederate Token Exchange

Comments
5 min read
Trusted AI Agent Transactions, Part 1: The Identity Problem

Trusted AI Agent Transactions, Part 1: The Identity Problem

Comments
2 min read
Trusted AI Agent Transactions, Part 5: End-to-End Proof

Trusted AI Agent Transactions, Part 5: End-to-End Proof

Comments
3 min read
Trusted AI Agent Transactions, Part 4: PingAuthorize Policy Decisions

Trusted AI Agent Transactions, Part 4: PingAuthorize Policy Decisions

Comments
2 min read
I Rate-Limited My Own API. Then I Found a Way to Bypass It Myself.

I Rate-Limited My Own API. Then I Found a Way to Bypass It Myself.

Comments
3 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.