DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
I put a WAF on the front door. The spam wasn't using the front door.

I put a WAF on the front door. The spam wasn't using the front door.

Comments
4 min read
Eight online tools for supply-chain and identity formats

Eight online tools for supply-chain and identity formats

Comments
3 min read
Re: --network none is your best friend — here's our full sandbox config + gVisor update

Re: --network none is your best friend — here's our full sandbox config + gVisor update

Comments
1 min read
Your Ops Agent’s Chat History Is an Attack Surface: Prompt Injection Just Became an Infrastructure Problem

Your Ops Agent’s Chat History Is an Attack Surface: Prompt Injection Just Became an Infrastructure Problem

Comments
4 min read
đź”’ Why ATLOCK v4 Is Different: Engineering a Security Suite Instead of Just Another Password Locker

đź”’ Why ATLOCK v4 Is Different: Engineering a Security Suite Instead of Just Another Password Locker

12
Comments
3 min read
The spend cap worked. The risk budget didn't compose.

The spend cap worked. The risk budget didn't compose.

Comments
4 min read
We planted a Descope privilege-escalation bug — can your coding agent catch it?

We planted a Descope privilege-escalation bug — can your coding agent catch it?

Comments
2 min read
What's New in Laravel 13.15: Typed Translations and More

What's New in Laravel 13.15: Typed Translations and More

1
Comments
7 min read
Why a Successful AI Subscription Payment Can Still Leave an Account on Free

Why a Successful AI Subscription Payment Can Still Leave an Account on Free

Comments
4 min read
I built a full IAM system in Spring Boot — here's what broke when I put it on the internet

I built a full IAM system in Spring Boot — here's what broke when I put it on the internet

2
Comments
3 min read
What a chess parser taught me about trusting user input

What a chess parser taught me about trusting user input

1
Comments
6 min read
How your AI coding assistant can quietly install a virus

How your AI coding assistant can quietly install a virus

Comments
5 min read
Kubernetes RBAC — Control Who Can Do What in Your Cluster

Kubernetes RBAC — Control Who Can Do What in Your Cluster

Comments
3 min read
uv audit vs pip-audit, and a gate narrower than it looks

uv audit vs pip-audit, and a gate narrower than it looks

5
Comments
13 min read
I built a CLI that catches shadow APIs in Express.js repos before they merge to production

I built a CLI that catches shadow APIs in Express.js repos before they merge to production

1
Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.