DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
The Dependency Avalanche: 644 Strangers in Your package.json

The Dependency Avalanche: 644 Strangers in Your package.json

Comments
6 min read
PREDICTION-20260512-0004: boredom-with-asymmetric-leverage [2026-Q3 through 2027-Q1]

PREDICTION-20260512-0004: boredom-with-asymmetric-leverage [2026-Q3 through 2027-Q1]

Comments
4 min read
Why output-stage PII masking is the wrong protective surface for data exfiltration in RAG

Why output-stage PII masking is the wrong protective surface for data exfiltration in RAG

Comments 2
8 min read
The Bucket You Deleted is Still in Your DNS: S3 Bucket Takeover at Bime

The Bucket You Deleted is Still in Your DNS: S3 Bucket Takeover at Bime

Comments
5 min read
React2Shell (CVE-2025-55182): Exploitation Flow and Secure Coding Lessons

React2Shell (CVE-2025-55182): Exploitation Flow and Secure Coding Lessons

1
Comments
1 min read
Building a DDoS Bouncer: Anomaly Detection with Python & Z-Score

Building a DDoS Bouncer: Anomaly Detection with Python & Z-Score

4
Comments 1
2 min read
PreviewDrop's Privacy Policy Is Live — What It Means for Teams Who Care About Data

PreviewDrop's Privacy Policy Is Live — What It Means for Teams Who Care About Data

Comments
2 min read
I Inherited a NestJS Codebase. The First Lint Run Found 6 Vulnerabilities.

I Inherited a NestJS Codebase. The First Lint Run Found 6 Vulnerabilities.

1
Comments 2
5 min read
GHSA-H829-5CG7-6HFF: GHSA-H829-5CG7-6HFF: Improper Tag Signature Verification in Gitverify

GHSA-H829-5CG7-6HFF: GHSA-H829-5CG7-6HFF: Improper Tag Signature Verification in Gitverify

Comments
2 min read
572K Weekly Downloads, One Preinstall Script: The SAP CAP Supply Chain Attack Your AI Agent Would Have Missed

572K Weekly Downloads, One Preinstall Script: The SAP CAP Supply Chain Attack Your AI Agent Would Have Missed

1
Comments
3 min read
PREDICTION-20260518-0006: craft-and-peer-recognition [2026-Q3 through 2027-Q4]

PREDICTION-20260518-0006: craft-and-peer-recognition [2026-Q3 through 2027-Q4]

2
Comments
3 min read
Fixing a 1-in-256 bug in CLWW order-preserving encryption

Fixing a 1-in-256 bug in CLWW order-preserving encryption

Comments
8 min read
What Is Agent Reliability Testing?

What Is Agent Reliability Testing?

Comments
9 min read
Fully Migrate Secrets Out Of Terraform Module State Without Breaking Existing Users

Fully Migrate Secrets Out Of Terraform Module State Without Breaking Existing Users

Comments
2 min read
PREDICTION-20260427-0002: grievance-and-humiliation-reversal [2026-Q2 through 2026-Q4]

PREDICTION-20260427-0002: grievance-and-humiliation-reversal [2026-Q2 through 2026-Q4]

Comments
2 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.