DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Stop storing your GitHub App private key in GitHub Secrets

Stop storing your GitHub App private key in GitHub Secrets

1
Comments
7 min read
GitHub Employee's Unsolicited Pull Request Raises Legitimacy Concerns: Communication Breakdown Leaves User Unresolved.

GitHub Employee's Unsolicited Pull Request Raises Legitimacy Concerns: Communication Breakdown Leaves User Unresolved.

Comments
13 min read
Puppet Core 8.18.0 is out: macOS 15 support and key security updates

Puppet Core 8.18.0 is out: macOS 15 support and key security updates

Comments
2 min read
Private keys and elliptic curves: a deep-dive for people who don't like math

Private keys and elliptic curves: a deep-dive for people who don't like math

Comments
7 min read
How Access Control Mistakes Led to $1.4B in Losses

How Access Control Mistakes Led to $1.4B in Losses

Comments
2 min read
Modernize Auth Without Changing Your Firebase Sessions

Modernize Auth Without Changing Your Firebase Sessions

10
Comments
6 min read
Cursor MCP Proxy Setup Guide: Add Budget Controls and Audit Trails to Your Tools

Cursor MCP Proxy Setup Guide: Add Budget Controls and Audit Trails to Your Tools

1
Comments
5 min read
Why Cursor Keeps Hardcoding Your API Keys (And How to Stop It)

Why Cursor Keeps Hardcoding Your API Keys (And How to Stop It)

1
Comments 1
3 min read
How AI Text Detection Works Under the Hood: Perplexity, Burstiness, and Classifiers

How AI Text Detection Works Under the Hood: Perplexity, Burstiness, and Classifiers

Comments
5 min read
Designing a safe error handling package in Go: safe by default

Designing a safe error handling package in Go: safe by default

Comments
5 min read
Manual testing isn't dying, but manual testers need to change

Manual testing isn't dying, but manual testers need to change

Comments
7 min read
How to Configure Nginx as an HTTPS Proxy Server?

How to Configure Nginx as an HTTPS Proxy Server?

13
Comments
3 min read
Your team is confusing bug severity with priority, and it's costing you sprints

Your team is confusing bug severity with priority, and it's costing you sprints

Comments
7 min read
Firebase Hosting SSL Bug: My Site Is Still Serving a Bank's Certificate

Firebase Hosting SSL Bug: My Site Is Still Serving a Bank's Certificate

Comments
2 min read
RedSOC: Open-source framework to benchmark adversarial attacks on AI-powered SOCs — 100% detection rate across 15 attack scenarios [paper + code]

RedSOC: Open-source framework to benchmark adversarial attacks on AI-powered SOCs — 100% detection rate across 15 attack scenarios [paper + code]

Comments
2 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.