DEV Community

# devsecops

Integrating security practices into the DevOps lifecycle.

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
2026 DevSecOps Benchmark: SonarQube 10.5 vs CodeQL 2.16 for Code Quality

2026 DevSecOps Benchmark: SonarQube 10.5 vs CodeQL 2.16 for Code Quality

Comments
14 min read
How we self-pentested ciguard — Cycle 1: four findings, four advisories, two days

How we self-pentested ciguard — Cycle 1: four findings, four advisories, two days

Comments
8 min read
Why Cursor Keeps Writing MD5 Password Hashes (CWE-328)

Why Cursor Keeps Writing MD5 Password Hashes (CWE-328)

Comments
3 min read
3 SQL Injection Patterns Cursor Keeps Writing Into Your API

3 SQL Injection Patterns Cursor Keeps Writing Into Your API

Comments
3 min read
Prototype Pollution: What Cursor's Object Merge Code Misses

Prototype Pollution: What Cursor's Object Merge Code Misses

2
Comments
3 min read
Secure Terraform PRs with an Architecture Firewall

Secure Terraform PRs with an Architecture Firewall

Comments
7 min read
Cursor Keeps Writing IDOR Into Your APIs. Here's the Fix.

Cursor Keeps Writing IDOR Into Your APIs. Here's the Fix.

4
Comments
3 min read
IDOR in Cursor-Generated Code: The Auth Bug Nobody Checks For

IDOR in Cursor-Generated Code: The Auth Bug Nobody Checks For

2
Comments
3 min read
GitLab 18.11: Agentic AI for Security, CI, and Analytics

GitLab 18.11: Agentic AI for Security, CI, and Analytics

Comments
10 min read
CNAPP won't fix your IAM mess

CNAPP won't fix your IAM mess

Comments
2 min read
IDOR in AI-Generated Code: What Cursor Won't Check for You

IDOR in AI-Generated Code: What Cursor Won't Check for You

1
Comments
2 min read
Void Dokkaebi Uses Fake Job Interview Lure to Spread Malware via Code Repositories

Void Dokkaebi Uses Fake Job Interview Lure to Spread Malware via Code Repositories

Comments
1 min read
IDOR in AI-Generated APIs: What Cursor Won't Check for You

IDOR in AI-Generated APIs: What Cursor Won't Check for You

3
Comments 2
3 min read
Zero Trust Architecture | The Future of Secure Software Development

Zero Trust Architecture | The Future of Secure Software Development

Comments
4 min read
Why Cursor Keeps Generating MD5 Password Hashes in 2026

Why Cursor Keeps Generating MD5 Password Hashes in 2026

2
Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.