DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Blue Watch, Day 4-6: From Alerts to a Story

Blue Watch, Day 4-6: From Alerts to a Story

Comments 3
3 min read
Fix GitHub Copilot Terraform Security Risks Before They Hit Prod

Fix GitHub Copilot Terraform Security Risks Before They Hit Prod

Comments
11 min read
Auditing Agent Skills: A Threat Model for the Next Generation of AI Package Managers

Auditing Agent Skills: A Threat Model for the Next Generation of AI Package Managers

30
Comments 4
7 min read
The AI Can Find Your Bug. It Just Doesn't Know It's a Bug.

The AI Can Find Your Bug. It Just Doesn't Know It's a Bug.

Comments 1
6 min read
3 Free API Scripts That Find Subdomain Takeover Security Flaws

3 Free API Scripts That Find Subdomain Takeover Security Flaws

1
Comments
5 min read
Are Microsoft Signed Packages Safe? 73 Were Not

Are Microsoft Signed Packages Safe? 73 Were Not

Comments
8 min read
AI Harnesses Are Just Middleware, and Middleware Trust Bugs Are Older Than Your Career

AI Harnesses Are Just Middleware, and Middleware Trust Bugs Are Older Than Your Career

1
Comments 2
3 min read
Are USB Devices a Security Risk for Your PC?

Are USB Devices a Security Risk for Your PC?

Comments
8 min read
Dominican Republic e-CF: how one tampered byte invalidates your invoice (and how to catch it)

Dominican Republic e-CF: how one tampered byte invalidates your invoice (and how to catch it)

Comments
3 min read
Zero-Trust Data Sovereignty: Enforcing Localized MCP Tool Policies in Multi-Region Stacks

Zero-Trust Data Sovereignty: Enforcing Localized MCP Tool Policies in Multi-Region Stacks

39
Comments
6 min read
How offline license activation actually works

How offline license activation actually works

Comments
3 min read
Give Your Auditor AWS Access — Without Sharing a Single Credential

Give Your Auditor AWS Access — Without Sharing a Single Credential

Comments
5 min read
x402 standardized the handshake. It hasn't standardized the attacks.

x402 standardized the handshake. It hasn't standardized the attacks.

Comments 4
2 min read
Authentication vs Authorization in Cloud Security: Understanding the Difference 🔥

Authentication vs Authorization in Cloud Security: Understanding the Difference 🔥

Comments
3 min read
Applying Checkov SAST to Detect Security Issues in Terraform Infrastructure as Code

Applying Checkov SAST to Detect Security Issues in Terraform Infrastructure as Code

Comments
4 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.