DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Cleanup your Azure DevOps Service Principals

Cleanup your Azure DevOps Service Principals

14
Comments
4 min read
Low-Hanging Fruits of Web Security

Low-Hanging Fruits of Web Security

46
Comments 2
3 min read
Introduction to AWS and AWS Compute Services

Introduction to AWS and AWS Compute Services

11
Comments 5
14 min read
Bandit CTF - 1 to 5 Challenges WriteUp

Bandit CTF - 1 to 5 Challenges WriteUp

5
Comments
2 min read
Understanding Unikernels: The Future of Cloud Computing, Probably

Understanding Unikernels: The Future of Cloud Computing, Probably

18
Comments
7 min read
Keep Your Javascript Projects Secure With Snyk

Keep Your Javascript Projects Secure With Snyk

22
Comments 4
3 min read
Implementing End to End Encryption in your Cross Platform App

Implementing End to End Encryption in your Cross Platform App

11
Comments
2 min read
Kubestriker - A Blazing fast Security Auditing tool for kubernetes!!

Kubestriker - A Blazing fast Security Auditing tool for kubernetes!!

6
Comments
6 min read
Authentication vs. Authorization

Authentication vs. Authorization

161
Comments 4
2 min read
Secure Cookies in 5 steps

Secure Cookies in 5 steps

14
Comments
2 min read
Do you know what open source dependencies your teams are using?

Do you know what open source dependencies your teams are using?

7
Comments 3
4 min read
Criando e gerenciando usuários no Kubernetes

Criando e gerenciando usuários no Kubernetes

13
Comments
10 min read
Crypto-mining attack in my GitHub actions through Pull Request

Crypto-mining attack in my GitHub actions through Pull Request

43
Comments 13
8 min read
How to Prevent Code Injection Vulnerabilities in Serverless Applications (Part 2/2)

How to Prevent Code Injection Vulnerabilities in Serverless Applications (Part 2/2)

5
Comments
7 min read
Hack The Box: Invite Challenge

Hack The Box: Invite Challenge

7
Comments
3 min read
Google XSS challenge: Level 6 aka Follow the 🐇 (detailed walkthrough)

Google XSS challenge: Level 6 aka Follow the 🐇 (detailed walkthrough)

4
Comments 1
4 min read
How TLS and HTTPS Work - Plus a Handful of Useful Tools

How TLS and HTTPS Work - Plus a Handful of Useful Tools

4
Comments
1 min read
Google XSS challenge: Level 2 aka Persistence is key (detailed walkthrough)

Google XSS challenge: Level 2 aka Persistence is key (detailed walkthrough)

9
Comments 2
4 min read
Top 10 Extensions You Must Use For Your Privacy

Top 10 Extensions You Must Use For Your Privacy

9
Comments
6 min read
Google XSS challenge: Level 1 aka Hello world of XSS (detailed walkthrough)

Google XSS challenge: Level 1 aka Hello world of XSS (detailed walkthrough)

9
Comments
3 min read
secure password holder

secure password holder

2
Comments
2 min read
Java Syntax Puzzlers

Java Syntax Puzzlers

6
Comments 1
6 min read
Modernize your legacy API authentication with Microsoft.Identity.Web and Azure AD

Modernize your legacy API authentication with Microsoft.Identity.Web and Azure AD

10
Comments
3 min read
Would you use target="_blank"? And how many rels?

Would you use target="_blank"? And how many rels?

6
Comments 2
1 min read
Secure DevOps with Pulumi and Azure AD

Secure DevOps with Pulumi and Azure AD

16
Comments 2
5 min read
How to integrate Free SSL into your website?

How to integrate Free SSL into your website?

4
Comments
1 min read
Keeping GitHub Action workflows secure 02:12

Keeping GitHub Action workflows secure

9
Comments
2 min read
Configuring Security Services with AWS Organizations – Part 3: AWS Security Hub

Configuring Security Services with AWS Organizations – Part 3: AWS Security Hub

9
Comments 1
6 min read
How to properly store a password in the Database

How to properly store a password in the Database

5
Comments 2
4 min read
Implementing End to End Encryption in your Cross Platform App

Implementing End to End Encryption in your Cross Platform App

15
Comments
5 min read
This is not called Hacking ?

This is not called Hacking ?

6
Comments
3 min read
A simple way to Understand how you get attack from Phishing (Emails, Messaging Apps etc.)

A simple way to Understand how you get attack from Phishing (Emails, Messaging Apps etc.)

4
Comments
3 min read
Extensions: Google Chrome's Soft Underbelly (Part 2) 🔐

Extensions: Google Chrome's Soft Underbelly (Part 2) 🔐

8
Comments
9 min read
Creating and managing Accounts in AWS

Creating and managing Accounts in AWS

21
Comments
8 min read
Taking Back My Data From The Cloud - Messaging

Taking Back My Data From The Cloud - Messaging

2
Comments
4 min read
Bypassing Google XSS challenge

Bypassing Google XSS challenge

5
Comments 1
4 min read
The state of JSONP (and JSONP vulnerabilities) in 2021

The state of JSONP (and JSONP vulnerabilities) in 2021

14
Comments
7 min read
How to use Basic authentication with curl?

How to use Basic authentication with curl?

15
Comments
1 min read
Generate random passwords in Python using secrets

Generate random passwords in Python using secrets

6
Comments
1 min read
TryHackMe's Advent of Cyber 12-13

TryHackMe's Advent of Cyber 12-13

2
Comments
3 min read
Spring Boot : Custom Role - Permission Authorization using SpEL

Spring Boot : Custom Role - Permission Authorization using SpEL

3
Comments 3
3 min read
Authentication

Authentication

2
Comments
4 min read
Security for deleting resources

Security for deleting resources

13
Comments
4 min read
What is MFA?

What is MFA?

6
Comments
6 min read
How to securely call an authenticated API from your front end

How to securely call an authenticated API from your front end

9
Comments 1
7 min read
Hiding messages in images: steganography with Python and Repl.it

Hiding messages in images: steganography with Python and Repl.it

9
Comments
9 min read
Want to learn to hack?

Want to learn to hack?

6
Comments
1 min read
Frontend Security: Security Headers

Frontend Security: Security Headers

223
Comments 8
3 min read
Ever npm/pip installed malware? A modest call for action

Ever npm/pip installed malware? A modest call for action

3
Comments
2 min read
Pwnable.kr - Bof: Write-Up (with rizin and pwntools)

Pwnable.kr - Bof: Write-Up (with rizin and pwntools)

4
Comments
3 min read
Laravel - Livewire security

Laravel - Livewire security

20
Comments
2 min read
Five things I learned about SAML from studying a realistic example

Five things I learned about SAML from studying a realistic example

14
Comments
4 min read
How to Setup PostgreSQL with SSL inside a Docker Container

How to Setup PostgreSQL with SSL inside a Docker Container

23
Comments 15
4 min read
Protegendo seu servidor contra acessos indevidos

Protegendo seu servidor contra acessos indevidos

8
Comments
2 min read
Kubernetes Security - Network Encryption between k8s Deployments and Ingress

Kubernetes Security - Network Encryption between k8s Deployments and Ingress

3
Comments
5 min read
Unpacking SAML with AppMaps and VSCode

Unpacking SAML with AppMaps and VSCode

9
Comments
4 min read
Top 10 Npm Security Best Practices

Top 10 Npm Security Best Practices

27
Comments
7 min read
CSRF tokens for SPAs - Possible?

CSRF tokens for SPAs - Possible?

22
Comments 4
2 min read
Stay Secure

Stay Secure

4
Comments
2 min read
Should I train on CTF or Bug Bounty ?

Should I train on CTF or Bug Bounty ?

4
Comments
1 min read
loading...