DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
truffle-scan: A Deterministic Security Scanner That Catches Secrets & Injections in Under 2 Seconds

truffle-scan: A Deterministic Security Scanner That Catches Secrets & Injections in Under 2 Seconds

6
Comments 1
6 min read
Privacy by Design in Your API: How to Collect Less Data Without Breaking UX

Privacy by Design in Your API: How to Collect Less Data Without Breaking UX

Comments
3 min read
The Miasma Worm: How AI Coding Agents Became a Supply Chain Attack Surface

The Miasma Worm: How AI Coding Agents Became a Supply Chain Attack Surface

Comments 1
5 min read
Is Zero Trust Enough for Agentic Systems?

Validates moments vs action trajectories

Is Zero Trust Enough for Agentic Systems?

14
Comments 22
5 min read
Hijacking Phantom Shares: How a Cross-Contract Reentrancy in Panoptic Leads to Infinite Supply Inflation

Hijacking Phantom Shares: How a Cross-Contract Reentrancy in Panoptic Leads to Infinite Supply Inflation

1
Comments
5 min read
I Audited an AI Chatbot's Sandbox Like a Black-Box Linux Machine

I Audited an AI Chatbot's Sandbox Like a Black-Box Linux Machine

4
Comments 2
3 min read
llobster — AI-powered web security scanner, fully self-hosted published: true

llobster — AI-powered web security scanner, fully self-hosted published: true

Comments
1 min read
I Built an AI Honeypot on GCP — Attackers Came in 4 Minutes

I Built an AI Honeypot on GCP — Attackers Came in 4 Minutes

Comments
3 min read
Learnings about authentication and authorization.

Learnings about authentication and authorization.

Comments 1
4 min read
How to scan your codebase for post-quantum cryptographic risk

How to scan your codebase for post-quantum cryptographic risk

Comments
3 min read
Building AI outbound that won’t get you fired: guardrails, audit logs, and human-in-the-loop

Building AI outbound that won’t get you fired: guardrails, audit logs, and human-in-the-loop

Comments
3 min read
Catch Agent Mistakes Before They Execute: Agent Verifier + Conduct

Catch Agent Mistakes Before They Execute: Agent Verifier + Conduct

Comments
12 min read
Health checks are integral to website maintenance programmes

Health checks are integral to website maintenance programmes

Comments
5 min read
New CVEs in Ollama & DAEMON Tools; Webhooks Lack Signature Checks

New CVEs in Ollama & DAEMON Tools; Webhooks Lack Signature Checks

Comments
4 min read
PII Protection for AI Agents: Why Detection Isn't Enough and What Prevents Actual Exposure

PII Protection for AI Agents: Why Detection Isn't Enough and What Prevents Actual Exposure

2
Comments 1
8 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.