DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
The $26M Configuration Error: How Aave's CAPO Oracle Misfired — And 5 Oracle Hardening Patterns Every DeFi Protocol Needs

The $26M Configuration Error: How Aave's CAPO Oracle Misfired — And 5 Oracle Hardening Patterns Every DeFi Protocol Needs

Comments
6 min read
RSAC 2026: Every AI IDE Is Vulnerable - Here's What That Actually Means for Your Workflow

RSAC 2026: Every AI IDE Is Vulnerable - Here's What That Actually Means for Your Workflow

Comments
6 min read
Hardening JavaScript JITs: Practical Mitigations for Modern Engines

Hardening JavaScript JITs: Practical Mitigations for Modern Engines

Comments
9 min read
The ZK Circuit Kill Chain: 7 Zero-Knowledge Proof Vulnerabilities That Have Cost DeFi Over $200M — And How to Audit for Each One

The ZK Circuit Kill Chain: 7 Zero-Knowledge Proof Vulnerabilities That Have Cost DeFi Over $200M — And How to Audit for Each One

1
Comments
7 min read
Why every AI agent needs a cryptographic identity

Why every AI agent needs a cryptographic identity

Comments
3 min read
Arbitrary External Calls: The $17M DEX Aggregator Attack Pattern That's Still Lurking in 90% of Swap Routers

Arbitrary External Calls: The $17M DEX Aggregator Attack Pattern That's Still Lurking in 90% of Swap Routers

Comments
5 min read
Tailscale Has a Free API: Build a Private Network in 5 Minutes Without VPN Pain

Tailscale Has a Free API: Build a Private Network in 5 Minutes Without VPN Pain

Comments
2 min read
HashiCorp Boundary Has a Free API: Zero-Trust Access for Your Infrastructure

HashiCorp Boundary Has a Free API: Zero-Trust Access for Your Infrastructure

Comments
2 min read
Building a Hash Generator with Web Crypto API and a Pure-JS MD5 Fallback

Building a Hash Generator with Web Crypto API and a Pure-JS MD5 Fallback

Comments
5 min read
When /pair approve Bypasses the Scope Guard

When /pair approve Bypasses the Scope Guard

Comments
2 min read
29 Million Secrets Leaked on GitHub Last Year. AI Coding Tools Made It Worse.

29 Million Secrets Leaked on GitHub Last Year. AI Coding Tools Made It Worse.

Comments
5 min read
HashiCorp Vault Has a Free API: Here's How to Use It for Secrets Management

HashiCorp Vault Has a Free API: Here's How to Use It for Secrets Management

Comments
3 min read
OAuth 2.0 Explained: From Authorization Codes to PKCE (The Complete Picture)

OAuth 2.0 Explained: From Authorization Codes to PKCE (The Complete Picture)

2
Comments
4 min read
Before Your Agent Pays, It Needs to Prove Who It Is

Before Your Agent Pays, It Needs to Prove Who It Is

1
Comments
3 min read
The YieldBlox $10M Oracle Poisoning: How One Trade in a Dead Market Drained an Entire Lending Pool — And the 5-Defense Pattern Every Protocol Needs

The YieldBlox $10M Oracle Poisoning: How One Trade in a Dead Market Drained an Entire Lending Pool — And the 5-Defense Pattern Every Protocol Needs

1
Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.