DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Someone Called My AI System a Tool. Then They Showed Me Theirs.

Someone Called My AI System a Tool. Then They Showed Me Theirs.

Comments
6 min read
append-only merkle trees for agent audit trails

append-only merkle trees for agent audit trails

Comments
1 min read
Your AI Agent Dockerfile Might Be Leaking Secrets

Your AI Agent Dockerfile Might Be Leaking Secrets

2
Comments
7 min read
I built the same security auditor 5 times this week — once each for Supabase, PocketBase, Appwrite, Hasura/Nhost, and Firebase. Here is what I learned.

I built the same security auditor 5 times this week — once each for Supabase, PocketBase, Appwrite, Hasura/Nhost, and Firebase. Here is what I learned.

Comments
4 min read
I built a CLI session manager for web hacking. I'm tired of copy-pasting auth tokens 50 times a day

I built a CLI session manager for web hacking. I'm tired of copy-pasting auth tokens 50 times a day

Comments
1 min read
Your photos may still contain GPS metadata after editing

Your photos may still contain GPS metadata after editing

Comments
1 min read
agent payments without governance is the next incident

agent payments without governance is the next incident

Comments
1 min read
misconfigured payment flows move real money

misconfigured payment flows move real money

Comments
1 min read
Stop Using chmod 777: A Developer's Guide to Linux File Permissions

Stop Using chmod 777: A Developer's Guide to Linux File Permissions

Comments
5 min read
I Built a URL Threat Analyzer That Detects Phishing in Real-Time — Here's How It Works published

I Built a URL Threat Analyzer That Detects Phishing in Real-Time — Here's How It Works published

Comments
5 min read
DNSSEC: The Developer's Setup Guide (2026)

DNSSEC: The Developer's Setup Guide (2026)

Comments
5 min read
Your Search History Is a Goldmine: Heres Whos Mining It

Your Search History Is a Goldmine: Heres Whos Mining It

Comments
6 min read
Your Private API is Currently Safe. One Developer Change Away From Unsafe.

Your Private API is Currently Safe. One Developer Change Away From Unsafe.

Comments
8 min read
I scanned 35 random Firebase projects from GitHub. 23% leak user data anonymously.

I scanned 35 random Firebase projects from GitHub. 23% leak user data anonymously.

Comments
3 min read
Hardware-backed SSH keys, end to end: YubiKey, PIV, software alternatives, and where SSH CAs fit in

Hardware-backed SSH keys, end to end: YubiKey, PIV, software alternatives, and where SSH CAs fit in

Comments
15 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.