DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Why Fail-Closed Security Matters for Critical Systems

Why Fail-Closed Security Matters for Critical Systems

1
Comments
1 min read
I Built a Tool That Blinds AI to Your API Keys 100K+ Leaked Conversations Last Year Alone

I Built a Tool That Blinds AI to Your API Keys 100K+ Leaked Conversations Last Year Alone

Comments
1 min read
Building a Compliance Early Warning System

Building a Compliance Early Warning System

Comments
1 min read
Type Your File Validation Library as a Security Boundary

Type Your File Validation Library as a Security Boundary

Comments
11 min read
The indie SaaS security stack I run on a $7/mo VPS

The indie SaaS security stack I run on a $7/mo VPS

Comments
4 min read
How to Audit Your DNS Records for Subdomain Takeover Vulnerabilities

How to Audit Your DNS Records for Subdomain Takeover Vulnerabilities

Comments
4 min read
Deploying Authelia Open-Source Authentication and Authorization Gateway on Ubuntu 24.04

Deploying Authelia Open-Source Authentication and Authorization Gateway on Ubuntu 24.04

7
Comments 1
4 min read
I Built a Demo for Deterministic AI Execution Governance

I Built a Demo for Deterministic AI Execution Governance

Comments
2 min read
Debugging DNS leaks: why your VPN isn't hiding what you think it is

Debugging DNS leaks: why your VPN isn't hiding what you think it is

1
Comments
5 min read
Deploying CyberChef Open-Source Data Transformation Platform on Ubuntu 24.04

Deploying CyberChef Open-Source Data Transformation Platform on Ubuntu 24.04

6
Comments
2 min read
Three Things "Set HTTPS_PROXY" Cannot Stop

Three Things "Set HTTPS_PROXY" Cannot Stop

Comments
6 min read
We scanned 50+ MCP servers and found HIGH-severity bugs in Atlassian, GitHub, Cloudflare, and Microsoft — here's what we learned

We scanned 50+ MCP servers and found HIGH-severity bugs in Atlassian, GitHub, Cloudflare, and Microsoft — here's what we learned

1
Comments 1
4 min read
Malicious npm Packages With Valid SLSA Provenance: Inside the TanStack Attack

Malicious npm Packages With Valid SLSA Provenance: Inside the TanStack Attack

1
Comments 2
5 min read
I Got Tired of Trusting Strangers With My Passwords — So I Built My Own Vault

I Got Tired of Trusting Strangers With My Passwords — So I Built My Own Vault

Comments
6 min read
Skill files are the new supply chain attack surface. Your CI pipeline does not know that yet.

Skill files are the new supply chain attack surface. Your CI pipeline does not know that yet.

1
Comments 2
4 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.