DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
The Best Approach to Dependency Vulnerability Scanning in CI Pipelines

The Best Approach to Dependency Vulnerability Scanning in CI Pipelines

Comments
5 min read
I attacked my own Mac from another machine on the same LAN — and found a bug in my own app

I attacked my own Mac from another machine on the same LAN — and found a bug in my own app

Comments
6 min read
Did you know `next dev` binds to 0.0.0.0 by default?

Did you know `next dev` binds to 0.0.0.0 by default?

Comments
4 min read
Running Snyk on Real Legacy Java Code — The Full Unfiltered Results

Running Snyk on Real Legacy Java Code — The Full Unfiltered Results

Comments
10 min read
I Counted the Attack Vectors in Our AI Stack and Now I Can't Sleep

I Counted the Attack Vectors in Our AI Stack and Now I Can't Sleep

15
Comments 4
5 min read
When Did AI Become the New Toy? I Just Got Here.

When Did AI Become the New Toy? I Just Got Here.

Comments 4
4 min read
GiveWP CVE-2026-82222: RCE Chain from Unauthenticated Registration to PHP Object Injection

GiveWP CVE-2026-82222: RCE Chain from Unauthenticated Registration to PHP Object Injection

Comments
5 min read
Zabbix agent CVE-2026-59781: Privilege Escalation via DLL Loading During Installation

Zabbix agent CVE-2026-59781: Privilege Escalation via DLL Loading During Installation

Comments
4 min read
PaperCut Authentication Bypass and Dynamic Class Loading: Pre-authentication RCE Chain Actively Exploited

PaperCut Authentication Bypass and Dynamic Class Loading: Pre-authentication RCE Chain Actively Exploited

Comments
6 min read
The Auth Pattern I Copy Into Every New Project Now

The Auth Pattern I Copy Into Every New Project Now

1
Comments
3 min read
CacheGuard

CacheGuard

Comments
6 min read
My Solana Program Security Checklist

My Solana Program Security Checklist

Comments
5 min read
rulsynor-core v1.0: An AI Agent You Can Audit

rulsynor-core v1.0: An AI Agent You Can Audit

2
Comments 2
2 min read
Your .mcp.json probably has a live API key in it

Your .mcp.json probably has a live API key in it

2
Comments 2
3 min read
OpenAI's model escaped its sandbox and hacked Hugging Face to cheat on a test

OpenAI's model escaped its sandbox and hacked Hugging Face to cheat on a test

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.