DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
I Built a Deliberately Vulnerable PHP/MySQL Lab for Web Security Practice

I Built a Deliberately Vulnerable PHP/MySQL Lab for Web Security Practice

Comments
1 min read
The Agent Could Still Open .env

The Agent Could Still Open .env

Comments
7 min read
Agent ของ OpenAI ยึดเว็บเยอรมันเป็นบอร์ดแชทกันเอง, กรณี DseWiki 15,000 edits

Agent ของ OpenAI ยึดเว็บเยอรมันเป็นบอร์ดแชทกันเอง, กรณี DseWiki 15,000 edits

Comments
2 min read
Classify the Job First: A Router for Local Agents and Awake Hosts

Classify the Job First: A Router for Local Agents and Awake Hosts

1
Comments
9 min read
Queue Depth Is the Real Cloud Trigger: A Secret-Class Overflow Router

Queue Depth Is the Real Cloud Trigger: A Secret-Class Overflow Router

Comments
8 min read
Salesforce Gave Its AI Agent Full CRM Access. An Attacker Weaponized It With a Web Form.

Salesforce Gave Its AI Agent Full CRM Access. An Attacker Weaponized It With a Web Form.

4
Comments 6
6 min read
qrdrop: what 'no server' forces you to build

qrdrop: what 'no server' forces you to build

Comments 2
9 min read
You Cannot Leak What You Never Collected

You Cannot Leak What You Never Collected

Comments
4 min read
The Extension You Vetted Is Not the One That Auto-Updates

The Extension You Vetted Is Not the One That Auto-Updates

Comments
5 min read
Python's smtplib doesn't verify TLS certificates by default

Python's smtplib doesn't verify TLS certificates by default

Comments
3 min read
Bypassing a WAF and a CSP with Google Tag Manager: An Attacker’s Perspective and Remediation Advice

Bypassing a WAF and a CSP with Google Tag Manager: An Attacker’s Perspective and Remediation Advice

9
Comments
14 min read
How to Structure Your API Security Testing with OWASP ASTF 🚀

How to Structure Your API Security Testing with OWASP ASTF 🚀

Comments
1 min read
Agentic Security Testing Automation: From Vulnerability Discovery to Remediation-in-Loop

Agentic Security Testing Automation: From Vulnerability Discovery to Remediation-in-Loop

Comments
6 min read
Cómo solucionar el error \"Enable JavaScript and cookies to continue\"

Cómo solucionar el error \"Enable JavaScript and cookies to continue\"

Comments
3 min read
The Cloud Was Never Yours. I Got Tired of Pretending Otherwise.

The Cloud Was Never Yours. I Got Tired of Pretending Otherwise.

5
Comments
5 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.