DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Fighting Spam at Scale: How We Use Gemini to Protect the DEV Community

Fighting Spam at Scale: How We Use Gemini to Protect the DEV Community

63
Comments 7
3 min read
Self-Hosted Observability: $20/month vs $800/month

Self-Hosted Observability: $20/month vs $800/month

5
Comments
4 min read
Your node_modules Folder Is a Security Nightmare

Your node_modules Folder Is a Security Nightmare

5
Comments
6 min read
CVE-2026-23954: Incus Escape: From Templates to Host Root

CVE-2026-23954: Incus Escape: From Templates to Host Root

Comments
2 min read
How much 2FA annoys me

How much 2FA annoys me

1
Comments
2 min read
Week 6 Scripting Challenge: Building a Security Log Correlator

Week 6 Scripting Challenge: Building a Security Log Correlator

Comments
35 min read
Fixing MariaDB ERROR 2002 (HY000): TLS Handshake Fails with “Host Is Not Allowed to Connect”

Fixing MariaDB ERROR 2002 (HY000): TLS Handshake Fails with “Host Is Not Allowed to Connect”

Comments
3 min read
Secure your Ansible Automation: SBOM, CVE Analysis and Security reports

Secure your Ansible Automation: SBOM, CVE Analysis and Security reports

Comments
4 min read
CVE-2026-24009: YAML Deserialization: The Gift That Keeps on Giving in Docling-Core

CVE-2026-24009: YAML Deserialization: The Gift That Keeps on Giving in Docling-Core

Comments
2 min read
CVE-2026-1225: XML Ghosts in the Machine: Configuring Your Way to RCE in Logback

CVE-2026-1225: XML Ghosts in the Machine: Configuring Your Way to RCE in Logback

Comments
2 min read
React component for Telegram Login Widget

React component for Telegram Login Widget

Comments
2 min read
I Reverse Engineered ChatGPT Apps Iframe Sandbox

I Reverse Engineered ChatGPT Apps Iframe Sandbox

Comments
4 min read
Building Tamper-Evident Audit Trails for Trading Systems: A Complete VCP v1.1 Implementation Guide

Building Tamper-Evident Audit Trails for Trading Systems: A Complete VCP v1.1 Implementation Guide

Comments
24 min read
CVE-2026-24132: CVE-2026-24132: Orval's Mock Generator Did What You Told It To (And That's The Problem)

CVE-2026-24132: CVE-2026-24132: Orval's Mock Generator Did What You Told It To (And That's The Problem)

Comments
2 min read
HTTPS Isn’t Optional, It’s the Boundary of Your System

HTTPS Isn’t Optional, It’s the Boundary of Your System

Comments
2 min read
jwt-encde: A simple way to handle JWTs on your desktop

jwt-encde: A simple way to handle JWTs on your desktop

3
Comments
1 min read
secure calculator vault

secure calculator vault

Comments
1 min read
How to Verify Emails Without Sending OTPs - The Reversal Method

How to Verify Emails Without Sending OTPs - The Reversal Method

Comments
4 min read
CVE-2025-22234: The 73rd Byte: How a Spring Security Fix Created a Timing Leak

CVE-2025-22234: The 73rd Byte: How a Spring Security Fix Created a Timing Leak

Comments
2 min read
GHSA-JP3Q-WWP3-PWV9: Freeform, Free Execution: Stored XSS in Craft CMS's Favorite Form Builder

GHSA-JP3Q-WWP3-PWV9: Freeform, Free Execution: Stored XSS in Craft CMS's Favorite Form Builder

Comments
2 min read
Meshtastic Security: A Realistic Threat Model for Off-Grid Networks

Meshtastic Security: A Realistic Threat Model for Off-Grid Networks

Comments
2 min read
Multi-Instance n8n Self-Hosting Guide

Multi-Instance n8n Self-Hosting Guide

Comments
11 min read
How to practice Security Code Reviews

How to practice Security Code Reviews

1
Comments
2 min read
Cloudflare Tunnel SSH Setup Guide

Cloudflare Tunnel SSH Setup Guide

Comments
6 min read
GHSA-F456-RF33-4626: Mocking the Mock: RCE via Orval Code Generation

GHSA-F456-RF33-4626: Mocking the Mock: RCE via Orval Code Generation

Comments
2 min read
loading...