DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Ataqué mi propio servidor con Kali Linux — así lo agarró Wazuh, paso a paso

Ataqué mi propio servidor con Kali Linux — así lo agarró Wazuh, paso a paso

Comments
4 min read
What does a JWT actually prove? Less than your API assumes

What does a JWT actually prove? Less than your API assumes

11
Comments
6 min read
Autonomous AI Agents Breach Online Retailers in Chained Attacks to Steal Payment Card Data

Autonomous AI Agents Breach Online Retailers in Chained Attacks to Steal Payment Card Data

1
Comments 2
8 min read
CyberShield AI — Catch Vulnerabilities Before They Ship

CyberShield AI — Catch Vulnerabilities Before They Ship

Comments
1 min read
I Built a Claude Code Plugin That Audits Vibe-Coded Apps for Production Readiness

I Built a Claude Code Plugin That Audits Vibe-Coded Apps for Production Readiness

Comments 2
2 min read
ShieldCrash: PoC Claims a Defender Patch Bypass and Arbitrary File Read as SYSTEM

ShieldCrash: PoC Claims a Defender Patch Bypass and Arbitrary File Read as SYSTEM

1
Comments
5 min read
Workflow Identity Hijacking: AI Workflows Returning Internal Data Without Checking the Requester’s Authority

Workflow Identity Hijacking: AI Workflows Returning Internal Data Without Checking the Requester’s Authority

1
Comments
6 min read
Phishing Pages Built Inside the Browser: Microsoft Redirects and Blob URLs

Phishing Pages Built Inside the Browser: Microsoft Redirects and Blob URLs

1
Comments
6 min read
Fortinet CVE-2026-84390 and CVE-2026-84388: JWT Authentication Bypass and Browser Traffic Proxying

Fortinet CVE-2026-84390 and CVE-2026-84388: JWT Authentication Bypass and Browser Traffic Proxying

1
Comments
6 min read
Industrial-Scale AI Distillation: Collecting Model Outputs Through Distributed Accounts and Relays

Industrial-Scale AI Distillation: Collecting Model Outputs Through Distributed Accounts and Relays

1
Comments
6 min read
Chrome CVE-2026-87491: V8 Out-of-Bounds Write Exploited in the Wild

Chrome CVE-2026-87491: V8 Out-of-Bounds Write Exploited in the Wild

1
Comments
5 min read
OAuth 2.0 Device Flow: How Authentication Works When the Device Can't Handle the Login

OAuth 2.0 Device Flow: How Authentication Works When the Device Can't Handle the Login

1
Comments
5 min read
Is your Data Lakehouse actually a HIPAA liability?

Is your Data Lakehouse actually a HIPAA liability?

Comments 1
5 min read
PicoCTF Mod 26 Writeup — Brute-Force a Caesar Cipher

PicoCTF Mod 26 Writeup — Brute-Force a Caesar Cipher

Comments
3 min read
De Full Stack pra DevSecOps: documentando a virada em pĂşblico

De Full Stack pra DevSecOps: documentando a virada em pĂşblico

Comments
1 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.