DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Incident Readiness for CVE-2026-93952: A Tabletop Scenario for SD-WAN Teams

Incident Readiness for CVE-2026-93952: A Tabletop Scenario for SD-WAN Teams

Comments
3 min read
Artifact Repositories Are Trust Anchors: Incident Response for a Compromised Build Pipeline

Artifact Repositories Are Trust Anchors: Incident Response for a Compromised Build Pipeline

Comments
3 min read
A One-Character Token Was Enough: LiteLLM and the Credential Concentration Problem in AI Gateways

A One-Character Token Was Enough: LiteLLM and the Credential Concentration Problem in AI Gateways

Comments
4 min read
My Cybersecurity Journey: From Computers and IT to AI Security

My Cybersecurity Journey: From Computers and IT to AI Security

Comments
8 min read
6 Tools That Make Up a Local-First Security Stack (All Free)

6 Tools That Make Up a Local-First Security Stack (All Free)

Comments
10 min read
I Scanned Every Repo I've Ever Written. The Results Were Uncomfortable.

I Scanned Every Repo I've Ever Written. The Results Were Uncomfortable.

Comments
9 min read
Frontend visibility is not authorization

Frontend visibility is not authorization

Comments
1 min read
Regex Rules vs Entropy Heuristics: Two Ways to Find the Same Key

Regex Rules vs Entropy Heuristics: Two Ways to Find the Same Key

Comments
10 min read
Secret Scanning in CI vs in the Pre-Commit Hook: Which Layer Should Catch It?

Secret Scanning in CI vs in the Pre-Commit Hook: Which Layer Should Catch It?

Comments
10 min read
dotguard vs TruffleHog: Node Shops vs Data Teams, Different Rules

dotguard vs TruffleHog: Node Shops vs Data Teams, Different Rules

Comments
10 min read
The Post-Rotation Re-Scan: Proving a Leaked Key Is Actually Dead

The Post-Rotation Re-Scan: Proving a Leaked Key Is Actually Dead

Comments
10 min read
Building TARS: Turning a Visionary Cyber Defense Idea Into Code (R&D & Software Architecture)

Building TARS: Turning a Visionary Cyber Defense Idea Into Code (R&D & Software Architecture)

1
Comments
3 min read
A green boot does not prove your key manager is being used

A green boot does not prove your key manager is being used

Comments
5 min read
My prompt-injection fix caught 0 of 20 attacks. The part I almost didn't build caught all of them.

Judges can't spot manipulation if facts look right

My prompt-injection fix caught 0 of 20 attacks. The part I almost didn't build caught all of them.

4
Comments 5
5 min read
How a root job following a symlink becomes local root

How a root job following a symlink becomes local root

Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.