DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
How To Audit A Smart Contract

How To Audit A Smart Contract

23
Comments 3
3 min read
Why SSH Key Management Is Broken and How Certificates Fix It

Native OpenSSH support since 2010

Why SSH Key Management Is Broken and How Certificates Fix It

2
Comments 11
5 min read
Your OpenClaw Agent Just Got Hijacked Through localhost

Your OpenClaw Agent Just Got Hijacked Through localhost

1
Comments 1
5 min read
I built a blockchain where quantum computers have no mining advantage — here is how it works

I built a blockchain where quantum computers have no mining advantage — here is how it works

2
Comments
6 min read
The Cornucopia of Gamified Threat Modeling

The Cornucopia of Gamified Threat Modeling

3
Comments 2
7 min read
I read the source code of 11 AI agents. Most of them are a mess.

I read the source code of 11 AI agents. Most of them are a mess.

3
Comments 2
6 min read
Phobos Ransomware TTPs: Wire Fraud Conspiracy Attack Analysis

Phobos Ransomware TTPs: Wire Fraud Conspiracy Attack Analysis

Comments
5 min read
The security gap between "it works locally" and "it's live"

The security gap between "it works locally" and "it's live"

Comments
4 min read
Should You Run Your AI Assistant Inside Docker? I Researched It So You Do Not Have To

Should You Run Your AI Assistant Inside Docker? I Researched It So You Do Not Have To

Comments
4 min read
I built a live interactive attack demo — watch real prompt injection happen and get blocked in real time

I built a live interactive attack demo — watch real prompt injection happen and get blocked in real time

Comments
1 min read
Drupal AI Vulnerability Guardian: Triage 12 Vulnerability Patterns at Machine Speed

Drupal AI Vulnerability Guardian: Triage 12 Vulnerability Patterns at Machine Speed

1
Comments
5 min read
You Approved This MCP Server Yesterday. Today It's Stealing Your Files.

You Approved This MCP Server Yesterday. Today It's Stealing Your Files.

1
Comments
5 min read
Pac4j-JWT Authentication Bypass Vulnerability Undetected for Six Years Despite Advanced Security Tools

Pac4j-JWT Authentication Bypass Vulnerability Undetected for Six Years Despite Advanced Security Tools

Comments
9 min read
Show HN: Joy – Open trust network for AI agents (AI-to-AI vouching)

Show HN: Joy – Open trust network for AI agents (AI-to-AI vouching)

Comments 1
1 min read
Vibe Coding vs. Reality: Why Your AI-Generated Code Needs DevSecOps

Vibe Coding vs. Reality: Why Your AI-Generated Code Needs DevSecOps

3
Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.