DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
A batch manifest should be generated, not hand-written

A batch manifest should be generated, not hand-written

Comments
3 min read
A batch report should know less than its manifest

A batch report should know less than its manifest

Comments
3 min read
A signature revision footer must be the PDF's terminal footer

A signature revision footer must be the PDF's terminal footer

Comments
2 min read
Claude Code 2.1.224 Self-Hosted Environments Checklist

Claude Code 2.1.224 Self-Hosted Environments Checklist

Comments
5 min read
How to Find Hidden Programs Running on Windows (Before They Become a Security Problem)

How to Find Hidden Programs Running on Windows (Before They Become a Security Problem)

Comments
3 min read
🔐 Encrypting Broker API Keys at Rest: A Design Walkthrough from AssetLens

🔐 Encrypting Broker API Keys at Rest: A Design Walkthrough from AssetLens

Comments
8 min read
GitHub Actions OIDC: Eliminating Long-Lived Credentials from Your CI/CD Pipeline

GitHub Actions OIDC: Eliminating Long-Lived Credentials from Your CI/CD Pipeline

Comments
3 min read
They scoped the customer and forgot the customer's ledger — a High-severity cross-tenant BOLA in Open Food Network

They scoped the customer and forgot the customer's ledger — a High-severity cross-tenant BOLA in Open Food Network

Comments
6 min read
Your file upload validation is probably lying to you.

Your file upload validation is probably lying to you.

1
Comments
6 min read
AI Guardrails in Action: 4 Experiments You Can Run

AI Guardrails in Action: 4 Experiments You Can Run

Comments
2 min read
"My Docs Named the File That Stops AI Attribution in Commits. That File Isn't There."

"My Docs Named the File That Stops AI Attribution in Commits. That File Isn't There."

Comments
5 min read
Don't Trust-Execute AI-Generated Code: A Sandbox Harness for Evaluating Coding Models Safely

Don't Trust-Execute AI-Generated Code: A Sandbox Harness for Evaluating Coding Models Safely

Comments
6 min read
I Gave My Coding Agent Fake Tools on Purpose: A Boundary-Test Harness You Can Run on a Free Server

I Gave My Coding Agent Fake Tools on Purpose: A Boundary-Test Harness You Can Run on a Free Server

Comments
5 min read
Quarantine Lanes for AI-Generated Patches: A Bash Gate You Can Run for Free

Quarantine Lanes for AI-Generated Patches: A Bash Gate You Can Run for Free

Comments
6 min read
UNC6671: Helpdesk Vishing, SSO and SaaS Cross-Traversal, and Multi-Brand Extortion via Notification Deletion

UNC6671: Helpdesk Vishing, SSO and SaaS Cross-Traversal, and Multi-Brand Extortion via Notification Deletion

Comments
5 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.