DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Enhancing Enterprise Security: A Future DoD Cyber Defender’s Guide

Enhancing Enterprise Security: A Future DoD Cyber Defender’s Guide

Comments
4 min read
Vulnerability Management: A Critical Skill for Future DoD Cyber Professionals

Vulnerability Management: A Critical Skill for Future DoD Cyber Professionals

Comments
3 min read
Our benchmark was leaking the answers to the model. The numbers looked fine the whole time.

Our benchmark was leaking the answers to the model. The numbers looked fine the whole time.

Comments
3 min read
Beyond IP Blocking: Filtering Requests by Header, Query Param, and Cookie

Beyond IP Blocking: Filtering Requests by Header, Query Param, and Cookie

Comments
2 min read
Your AI guardrail is green. It's also catching nothing.

Your AI guardrail is green. It's also catching nothing.

9
Comments 26
7 min read
Claude Fable 5.1 กับ Mythos 5.1, โมเดลเดียวกันที่ต่างกันแค่ 'การ์ดป้องกัน'

Claude Fable 5.1 กับ Mythos 5.1, โมเดลเดียวกันที่ต่างกันแค่ 'การ์ดป้องกัน'

Comments
1 min read
React 19.3, the Compiler, and a CVSS 10: What Changed While You Weren't Looking

React 19.3, the Compiler, and a CVSS 10: What Changed While You Weren't Looking

1
Comments
5 min read
React 19.3, el compilador y un CVSS 10: lo que cambió mientras no mirabas

React 19.3, el compilador y un CVSS 10: lo que cambió mientras no mirabas

1
Comments
5 min read
The POST was guarded, the GET on the same URL was not: cross-tenant PII disclosure in CoopCycle (GET /api/stores/{id}/addresses)

The POST was guarded, the GET on the same URL was not: cross-tenant PII disclosure in CoopCycle (GET /api/stores/{id}/addresses)

Comments
8 min read
What Is Cross-Site Scripting (XSS)? Understanding a Critical Web Security Vulnerability.

What Is Cross-Site Scripting (XSS)? Understanding a Critical Web Security Vulnerability.

1
Comments
5 min read
The TODO shipped to npm: an unauthenticated route that could stop any city's AI workflow (Your Priorities, @yrpri/api < 9.0.244)

The TODO shipped to npm: an unauthenticated route that could stop any city's AI workflow (Your Priorities, @yrpri/api < 9.0.244)

Comments
7 min read
Grok's Wallet Drained by Morse Code: Inside an AI Agent Goal Hijack

Grok's Wallet Drained by Morse Code: Inside an AI Agent Goal Hijack

1
Comments 2
5 min read
iPhones Need a Child-Safety Handover Switch: A Proposed Temporary Under-18 Mode

iPhones Need a Child-Safety Handover Switch: A Proposed Temporary Under-18 Mode

Comments
7 min read
A SQL escape is not a shell escape: OS command injection in GOautodial goAPIv2

A SQL escape is not a shell escape: OS command injection in GOautodial goAPIv2

Comments
5 min read
Основы Product Security для автомобилей и зарядных станций: термины, архитектура, фреймворки

Основы Product Security для автомобилей и зарядных станций: термины, архитектура, фреймворки

Comments
2 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.