DEV Community

# appsec

Application security topics beyond the web, including mobile and desktop applications.

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Week 6 Quiz Audit XSS Vulnerabilities

Week 6 Quiz Audit XSS Vulnerabilities

1
Comments
17 min read
SAST vs DAST vs (IAST/RASP): Quick AppSec Checklist

SAST vs DAST vs (IAST/RASP): Quick AppSec Checklist

6
Comments 3
1 min read
Two "Medium" Findings That Chain Into Full Infrastructure Compromise

Two "Medium" Findings That Chain Into Full Infrastructure Compromise

Comments
4 min read
Is Learning Manual Vulnerability Scanning a Waste of Time in 2026?

Is Learning Manual Vulnerability Scanning a Waste of Time in 2026?

Comments
5 min read
Week 6 Quiz - Audit Crypto Bugs in Web Apps

Week 6 Quiz - Audit Crypto Bugs in Web Apps

1
Comments
66 min read
EU Cyber Resilience Act in Practice Webinar

EU Cyber Resilience Act in Practice Webinar

Comments
1 min read
What We Learned Securing a SaaS Product with Automated DAST

What We Learned Securing a SaaS Product with Automated DAST

3
Comments
5 min read
🔐 Root Detection Is Dead — What Actually Works in Android (2026)

🔐 Root Detection Is Dead — What Actually Works in Android (2026)

Comments
1 min read
The Hidden Risk of “Safe” Android Permissions Nobody Audits

The Hidden Risk of “Safe” Android Permissions Nobody Audits

Comments
1 min read
Week 6 Scripting Challenge: Build a TLS Certificate Security Validator

Week 6 Scripting Challenge: Build a TLS Certificate Security Validator

Comments
46 min read
ZAST.AI Security Advisory: Critical SSRF Resolved in ClawdBot.

ZAST.AI Security Advisory: Critical SSRF Resolved in ClawdBot.

Comments
1 min read
A Stored XSS (CVE-2026-0693) in the "Allow HTML in Category Descriptions" @WordPress plugin.

A Stored XSS (CVE-2026-0693) in the "Allow HTML in Category Descriptions" @WordPress plugin.

Comments
1 min read
Why Modern AppSec Needs Location-Aware Security Testing

Why Modern AppSec Needs Location-Aware Security Testing

Comments
4 min read
AI Didn’t Just Change Development,It Changed How AppSec Breaks

AI Didn’t Just Change Development,It Changed How AppSec Breaks

Comments
1 min read
Secure file upload validation in .NET: A layered approach

Secure file upload validation in .NET: A layered approach

1
Comments
8 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.