DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
My prompt-injection fix caught 0 of 20 attacks. The part I almost didn't build caught all of them.

Judges can't spot manipulation if facts look right

My prompt-injection fix caught 0 of 20 attacks. The part I almost didn't build caught all of them.

4
Comments 5
5 min read
How a root job following a symlink becomes local root

How a root job following a symlink becomes local root

Comments
5 min read
From Script to Secure Pipeline: How I Created a "Trust Boundary" in CI/CD

From Script to Secure Pipeline: How I Created a "Trust Boundary" in CI/CD

Comments
3 min read
Publishing a Chrome extension from GitHub Actions without a stored secret

Publishing a Chrome extension from GitHub Actions without a stored secret

Comments
6 min read
Make an agent's security policy fit the repo, and make its decisions visible

Make an agent's security policy fit the repo, and make its decisions visible

Comments
2 min read
Building FraudGraph Investigator: An AI-Powered Graph-Based Fraud Investigation System

Building FraudGraph Investigator: An AI-Powered Graph-Based Fraud Investigation System

Comments
6 min read
Serve Markdown to Agents at the Gateway, Not the Origin

Serve Markdown to Agents at the Gateway, Not the Origin

Comments 1
6 min read
The Agent Did It: Containing an AI That Acts Before You Approve.

The Agent Did It: Containing an AI That Acts Before You Approve.

1
Comments
3 min read
What a server knows about you before it reads a single header

What a server knows about you before it reads a single header

6
Comments
5 min read
From Fraud Score to Fraud Investigation: Building an Agentic Fraud Investigator with TigerGraph

From Fraud Score to Fraud Investigation: Building an Agentic Fraud Investigator with TigerGraph

Comments
1 min read
PicoCTF Keygenme-py Writeup — Reverse a Python License Key Generator

PicoCTF Keygenme-py Writeup — Reverse a Python License Key Generator

Comments
3 min read
The NEES Python SDK is intentionally smaller than the governance runtime behind it

The NEES Python SDK is intentionally smaller than the governance runtime behind it

Comments
4 min read
Credentials in the Agent's Reach: The Codex Memory-Sharing Issue

Credentials in the Agent's Reach: The Codex Memory-Sharing Issue

1
Comments 1
3 min read
Service identity is not user permission

Service identity is not user permission

Comments
1 min read
SPF, DKIM and DMARC: Email Security Setup Guide

SPF, DKIM and DMARC: Email Security Setup Guide

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.