DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
I built an epistemic gate to stop LLM data poisoning during fine-tuning. Tested across 5 architectures, orchestrated on a 2006 Toshiba laptop for $0.

I built an epistemic gate to stop LLM data poisoning during fine-tuning. Tested across 5 architectures, orchestrated on a 2006 Toshiba laptop for $0.

Comments
2 min read
Securing Agentic AI Workflows in n8n: From Leaked API Keys to Encryption Key Compromise

Securing Agentic AI Workflows in n8n: From Leaked API Keys to Encryption Key Compromise

Comments
12 min read
OAuth Recovery Links Need a Revocation Plan

OAuth Recovery Links Need a Revocation Plan

1
Comments
5 min read
Elementor Pro CVE-2026-32475: Active Exploitation of PHP Web Shell via Array Validation Bypass

Elementor Pro CVE-2026-32475: Active Exploitation of PHP Web Shell via Array Validation Bypass

Comments
7 min read
Coder Registry Compromise: Malicious Server Added to Cloudflare Pool to Distribute Malicious Terraform Modules

Coder Registry Compromise: Malicious Server Added to Cloudflare Pool to Distribute Malicious Terraform Modules

Comments
8 min read
BREEZE COMET: Breaching Financial Systems and Executing Fraudulent Transfers Using mTLS Credentials

BREEZE COMET: Breaching Financial Systems and Executing Fraudulent Transfers Using mTLS Credentials

Comments
8 min read
How We Built a Tamper-Evident Audit Log for SOC 2 and ISO 27001 Evidence

How We Built a Tamper-Evident Audit Log for SOC 2 and ISO 27001 Evidence

Comments
4 min read
The hard limits of an autonomous agent: what keeps it from disaster

The hard limits of an autonomous agent: what keeps it from disaster

Comments
3 min read
Wire Dotguard Into GitHub Actions: A Full-Repo Secret Scan in One YAML Block

Wire Dotguard Into GitHub Actions: A Full-Repo Secret Scan in One YAML Block

Comments
9 min read
How Enterprises Govern AI Agents: Practices That Work in Production

How Enterprises Govern AI Agents: Practices That Work in Production

Comments
11 min read
Audit Force-Pushes and Rewritten History Without a Git Server

Audit Force-Pushes and Rewritten History Without a Git Server

Comments
9 min read
Who Can Still Push to main? An Access and Process Audit in 30 Seconds

Who Can Still Push to main? An Access and Process Audit in 30 Seconds

Comments
10 min read
Hallucinations in Regulated Workflows: Catch Them at the Gateway with Bifrost

Hallucinations in Regulated Workflows: Catch Them at the Gateway with Bifrost

Comments
15 min read
Building Dotguard: What Writing Detection Rules Taught Me About Developer Habits

Building Dotguard: What Writing Detection Rules Taught Me About Developer Habits

Comments
9 min read
Clean Start, Clean Deps: Why Template Choice Affects Your Security Posture

Clean Start, Clean Deps: Why Template Choice Affects Your Security Posture

Comments
9 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.