DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
CVE-2026-33195: CVE-2026-33195: Path Traversal Vulnerability in Ruby on Rails Active Storage DiskService

CVE-2026-33195: CVE-2026-33195: Path Traversal Vulnerability in Ruby on Rails Active Storage DiskService

Comments
2 min read
OAuth 2.0 Flows Demystified: Authorization Code, PKCE, and Client Credentials

OAuth 2.0 Flows Demystified: Authorization Code, PKCE, and Client Credentials

Comments
4 min read
Two Vibe Coding Data Breaches. Zero Lines of Code Written. This Is a Pattern Now.

Two Vibe Coding Data Breaches. Zero Lines of Code Written. This Is a Pattern Now.

Comments
3 min read
Rate Limiting Your API: Algorithms, Tradeoffs, and Implementation

Rate Limiting Your API: Algorithms, Tradeoffs, and Implementation

Comments
4 min read
ForgeRock AM Scripted Decision Node: Production Scripts & Debug Guide

ForgeRock AM Scripted Decision Node: Production Scripts & Debug Guide

Comments
4 min read
Securing AI Agent Workflows: Preventing Identity Collapse in Multi-Step Chains

Securing AI Agent Workflows: Preventing Identity Collapse in Multi-Step Chains

Comments
9 min read
The TLS Fingerprinting Hell: Why I Stopped Reverse-Engineering the Vinted App

The TLS Fingerprinting Hell: Why I Stopped Reverse-Engineering the Vinted App

Comments
5 min read
Your Agent's Reputation Doesn't Travel. Here's What Does.

Your Agent's Reputation Doesn't Travel. Here's What Does.

Comments
4 min read
Everyone's Sharing Claude Code Skills. Nobody's Checking What's Inside.

Everyone's Sharing Claude Code Skills. Nobody's Checking What's Inside.

Comments
5 min read
Your API Is Leaking Source Fingerprints. Here's How to Stop It.

Your API Is Leaking Source Fingerprints. Here's How to Stop It.

2
Comments
6 min read
How Enterprise Wallet Infrastructure Actually Works: MPC, Custody Models, and Why MetaMask Was Never the Answer

How Enterprise Wallet Infrastructure Actually Works: MPC, Custody Models, and Why MetaMask Was Never the Answer

1
Comments
9 min read
Shadow API: O Que É, Riscos e Como Prevenir

Shadow API: O Que É, Riscos e Como Prevenir

Comments
9 min read
AI-Generated Backends Almost Always Get CORS Wrong

AI-Generated Backends Almost Always Get CORS Wrong

Comments
3 min read
Secrets Management for Laravel: .env, Encrypted Config, and Deploynix

Secrets Management for Laravel: .env, Encrypted Config, and Deploynix

1
Comments
7 min read
Security Checklist for Midnight dApps Before Deployment

Security Checklist for Midnight dApps Before Deployment

1
Comments
6 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.