DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Deepfake detection is losing. Timestamped proof-of-existence might be the other half of the answer

Deepfake detection is losing. Timestamped proof-of-existence might be the other half of the answer

Comments
2 min read
I built a secrets manager because sharing .env files at work was painful!

I built a secrets manager because sharing .env files at work was painful!

Comments
2 min read
Bot Detection False Positives: How to Actually Test Accuracy

Bot Detection False Positives: How to Actually Test Accuracy

Comments
9 min read
Browser Fingerprinting in 2026: What Still Works, What Doesn't

Browser Fingerprinting in 2026: What Still Works, What Doesn't

Comments
9 min read
Why the New LLM Reasoning Leak Paper Matters for Your Team’s AI Workflow

Why the New LLM Reasoning Leak Paper Matters for Your Team’s AI Workflow

Comments
4 min read
An error message gave me the path. The XML parser gave me the file

An error message gave me the path. The XML parser gave me the file

Comments
4 min read
AWS Organizations in Production: Structure, SCP Evaluation, and Landing Zone Gotchas

AWS Organizations in Production: Structure, SCP Evaluation, and Landing Zone Gotchas

Comments 3
6 min read
Your EOL dependencies just became a legal question, not a tech-debt question

Your EOL dependencies just became a legal question, not a tech-debt question

Comments
7 min read
OAuth Signup: Prove Email Without Trusting It

OAuth Signup: Prove Email Without Trusting It

1
Comments
3 min read
I benchmarked my scanner against Semgrep. It lost — sort of.

I benchmarked my scanner against Semgrep. It lost — sort of.

1
Comments
2 min read
AI Agent Authentication in 2026: Web Bot Auth, ARD & OAuth

AI Agent Authentication in 2026: Web Bot Auth, ARD & OAuth

Comments 3
9 min read
Read-Only Access Testing: A Successful Login Is Not Enough

Read-Only Access Testing: A Successful Login Is Not Enough

Comments
6 min read
AI Agents Need Their Own Authorization, Not Yours

AI Agents Need Their Own Authorization, Not Yours

1
Comments 5
9 min read
1.8 Million APKs Later, We Should Talk About What "AI Agent" Actually Means in a Threat Model

1.8 Million APKs Later, We Should Talk About What "AI Agent" Actually Means in a Threat Model

1
Comments
3 min read
What Is HTTP Request Smuggling? How Can Two Servers Disagree About One Request?

What Is HTTP Request Smuggling? How Can Two Servers Disagree About One Request?

1
Comments
6 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.