DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Building Privacy-First PDF Tools That Run Entirely in the Browser

Building Privacy-First PDF Tools That Run Entirely in the Browser

Comments
1 min read
Secure file upload validation in .NET: A layered approach

Secure file upload validation in .NET: A layered approach

Comments
8 min read
CVE-2026-23527: Case Sensitivity Kills: HTTP Request Smuggling in H3

CVE-2026-23527: Case Sensitivity Kills: HTTP Request Smuggling in H3

Comments
2 min read
Metasploit Deep Dive: Staged vs. Stageless Payloads — A Practical Lab

Metasploit Deep Dive: Staged vs. Stageless Payloads — A Practical Lab

Comments
3 min read
Security best practices in Umami codebase - part 1.1

Security best practices in Umami codebase - part 1.1

Comments
4 min read
GHSA-58Q2-9X27-H2JM: The Infinite Buffer: Crashing Craft CMS via Axios Data URIs

GHSA-58Q2-9X27-H2JM: The Infinite Buffer: Crashing Craft CMS via Axios Data URIs

Comments
2 min read
Gommitlint - a tool for keeping your commit quality

Gommitlint - a tool for keeping your commit quality

Comments
3 min read
I Evaluated Enterprise Auth for a SaaS App and Here’s My Honest Take on WorkOS AuthKit + Radar

I Evaluated Enterprise Auth for a SaaS App and Here’s My Honest Take on WorkOS AuthKit + Radar

6
Comments
6 min read
CVE-2026-1002: Ghost in the Machine: Vert.x Cache Poisoning DoS

CVE-2026-1002: Ghost in the Machine: Vert.x Cache Poisoning DoS

Comments
2 min read
CVE-2026-22775: Devalue, Indeed: How a Simple Serializer Can Crash Your Svelte App

CVE-2026-22775: Devalue, Indeed: How a Simple Serializer Can Crash Your Svelte App

Comments
2 min read
How to Protect LLM Inputs from Prompt Injection (Without Building It Yourself)

How to Protect LLM Inputs from Prompt Injection (Without Building It Yourself)

Comments
4 min read
Cybersecurity Weekly — Latest Highlights (Jan 16–17, 2026)

Cybersecurity Weekly — Latest Highlights (Jan 16–17, 2026)

1
Comments
2 min read
Run Phishing Simulations for $37/Month Instead of $30,000/Year

Run Phishing Simulations for $37/Month Instead of $30,000/Year

Comments
2 min read
AI-based Face Authentication system built with Python and deployed on Google Cloud Platform (GCP)!

AI-based Face Authentication system built with Python and deployed on Google Cloud Platform (GCP)!

Comments 1
1 min read
The Hidden Backbone of the Internet: Why S3 Security Should Keep You Up at Night

The Hidden Backbone of the Internet: Why S3 Security Should Keep You Up at Night

Comments
13 min read
Kubernetes IAM & RBAC for DevOps & SRE

Kubernetes IAM & RBAC for DevOps & SRE

1
Comments
4 min read
CVE-2026-23519: Betrayal by Optimization: How LLVM Broke Rust's Constant-Time Promises

CVE-2026-23519: Betrayal by Optimization: How LLVM Broke Rust's Constant-Time Promises

Comments
2 min read
CVE-2025-66292: DPanel's Delete Function Works Too Well: A Tale of Path Traversal

CVE-2025-66292: DPanel's Delete Function Works Too Well: A Tale of Path Traversal

Comments
2 min read
Agent Factory Recap: Securing AI Agents in Production

Agent Factory Recap: Securing AI Agents in Production

18
Comments
7 min read
ZSZRUN “Trading” Red Flags: Why This Looks Like a Controlled System, Not a Real Market

ZSZRUN “Trading” Red Flags: Why This Looks Like a Controlled System, Not a Real Market

Comments
3 min read
How I built a Zero-Knowledge Secret Sharer using Next.js and the Web Crypto API

How I built a Zero-Knowledge Secret Sharer using Next.js and the Web Crypto API

Comments
3 min read
Networking Tools: netcat, tcpdump, dig, nmap

Networking Tools: netcat, tcpdump, dig, nmap

Comments
6 min read
The ServiceNow AI Vulnerability: What Went Wrong and How to Secure Your AI Agents

The ServiceNow AI Vulnerability: What Went Wrong and How to Secure Your AI Agents

Comments 1
6 min read
Django Security: 10 Essential Steps to Secure Your Project Before Production

Django Security: 10 Essential Steps to Secure Your Project Before Production

1
Comments
11 min read
7 Urgent Fixes: Trend Micro Apex Central CVE-2025-69258

7 Urgent Fixes: Trend Micro Apex Central CVE-2025-69258

2
Comments
8 min read
loading...