DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
How secrets work in multi-service OSC stacks (and one mistake we helped a customer avoid)

How secrets work in multi-service OSC stacks (and one mistake we helped a customer avoid)

Comments
4 min read
Static Analysis for LLM Prompt Security: A Methodology for Pre-Deploy Vulnerability Detection.

Static Analysis for LLM Prompt Security: A Methodology for Pre-Deploy Vulnerability Detection.

Comments
11 min read
Your AI Agent Dockerfile Might Be Leaking Secrets

Your AI Agent Dockerfile Might Be Leaking Secrets

1
Comments
7 min read
Ollama Out-of-Bounds Read, Docker UFW Bypass, & EagleSpy RAT Analysis

Ollama Out-of-Bounds Read, Docker UFW Bypass, & EagleSpy RAT Analysis

Comments
4 min read
Deep inside the COM: Reading Windows ROT Without Asking Permission. Detective story

Deep inside the COM: Reading Windows ROT Without Asking Permission. Detective story

Comments
4 min read
LangChain ChromaDB Metadata Priority Injection — RAG Poisoning Vulnerability

LangChain ChromaDB Metadata Priority Injection — RAG Poisoning Vulnerability

Comments
1 min read
Pipelock Agent Egress Control: the missing CI primitive for AI agents

Pipelock Agent Egress Control: the missing CI primitive for AI agents

Comments
3 min read
Proposal on Play Store security measures (alternative to Google's mandatory "developer verification")

Proposal on Play Store security measures (alternative to Google's mandatory "developer verification")

Comments
6 min read
When prompts become shells: the tool registry is the attack surface

When prompts become shells: the tool registry is the attack surface

Comments
4 min read
Why I Built an ML-Powered Secrets Detector Instead of Just Using Regex

Why I Built an ML-Powered Secrets Detector Instead of Just Using Regex

Comments
8 min read
I built 14 VS Code extensions to fix the workflows developers quietly suffer through

I built 14 VS Code extensions to fix the workflows developers quietly suffer through

Comments
2 min read
Why Prompt Injection Is an Architectural Problem - Not Just a Security Bug

Why Prompt Injection Is an Architectural Problem - Not Just a Security Bug

Comments
11 min read
"Secure Financial Workflows: Key Lessons from the Trenches"

"Secure Financial Workflows: Key Lessons from the Trenches"

Comments
2 min read
Surviving Byzantine Fire: Empirical Proof of a Deterministic Web3 AI Architecture

Surviving Byzantine Fire: Empirical Proof of a Deterministic Web3 AI Architecture

1
Comments
4 min read
CORS: Why It Exists, How It Works & How to Fix Common Issues

CORS: Why It Exists, How It Works & How to Fix Common Issues

Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.