DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Moving from 'checking reviews' to 'running campaigns': The Agentic workflow shift

Moving from 'checking reviews' to 'running campaigns': The Agentic workflow shift

2
Comments
4 min read
My 7/7 Gate Fell to One Admin Capability. A Second Witness Only Moved the Wall.

My 7/7 Gate Fell to One Admin Capability. A Second Witness Only Moved the Wall.

19
Comments 3
13 min read
Don't send secrets to your LLM: a pre-send scanner that never stores what it finds

Don't send secrets to your LLM: a pre-send scanner that never stores what it finds

Comments
6 min read
Building CipherBite: An Offline Text Encryption App to Share Credentials Securely

Building CipherBite: An Offline Text Encryption App to Share Credentials Securely

2
Comments 1
3 min read
Applying Bandit SAST to Detect Vulnerabilities in a Python Flask Application

Applying Bandit SAST to Detect Vulnerabilities in a Python Flask Application

Comments
3 min read
Applying Bandit SAST to Detect Vulnerabilities in a Python Flask Application

Applying Bandit SAST to Detect Vulnerabilities in a Python Flask Application

Comments
3 min read
My Upload Check Trusted the Attacker's Word: 8 Bytes Fixed It

Summer Bug Smash: Smash Stories 🐛🛹

My Upload Check Trusted the Attacker's Word: 8 Bytes Fixed It

1
Comments
4 min read
How to Verify an AI Crawler Is Who It Says It Is

How to Verify an AI Crawler Is Who It Says It Is

Comments 5
7 min read
The invisible characters in your prompts aren't a conspiracy — they're a warning about your trust boundary

The invisible characters in your prompts aren't a conspiracy — they're a warning about your trust boundary

Comments
7 min read
How AegisLink's handshake survives a quantum computer (X3DH + ML-KEM-768)

How AegisLink's handshake survives a quantum computer (X3DH + ML-KEM-768)

Comments
3 min read
GhostApproval: six AI coding agents shipped a permission dialog that was reading the wrong path

GhostApproval: six AI coding agents shipped a permission dialog that was reading the wrong path

Comments 1
4 min read
A plaintext Firebase password authenticated anyone who visited the site — here's how I fixed it without disconnecting anyone

A plaintext Firebase password authenticated anyone who visited the site — here's how I fixed it without disconnecting anyone

Comments 2
6 min read
Hello, DEV — I’m Joseph Sides, a Data Privacy Advocate and Consultant

Hello, DEV — I’m Joseph Sides, a Data Privacy Advocate and Consultant

6
Comments
3 min read
JWT Auth in .NET 8: The Validation Settings People Skip

JWT Auth in .NET 8: The Validation Settings People Skip

2
Comments
6 min read
Why End-to-End Encryption Isn't Enough: Building Messaging Apps That Protect Privacy Before a Message Is Opened

Why End-to-End Encryption Isn't Enough: Building Messaging Apps That Protect Privacy Before a Message Is Opened

Comments
3 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.