DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Backtesting detection rules — including the ones for AI attacks

Backtesting detection rules — including the ones for AI attacks

Comments
4 min read
Supabase Row Level Security: The Policies That Actually Ship SaaS

Supabase Row Level Security: The Policies That Actually Ship SaaS

Comments
6 min read
npm v12 flips install-time to closed-by-default

npm v12 flips install-time to closed-by-default

Comments
3 min read
Why AI Models Disagree About Security Vulnerabilities in Code

Why AI Models Disagree About Security Vulnerabilities in Code

Comments
2 min read
Implementing Row-Level Access Control

Implementing Row-Level Access Control

2
Comments 2
4 min read
My AI Agent Captured the Flag. Then the Platform Refused to Accept It.

My AI Agent Captured the Flag. Then the Platform Refused to Accept It.

3
Comments 3
6 min read
Screen a name against the OFAC sanctions list in 3 lines (REST API, free tier)

Screen a name against the OFAC sanctions list in 3 lines (REST API, free tier)

Comments
6 min read
5 HIPAA Violations Hiding in Your Next.js Healthcare App Right Now

5 HIPAA Violations Hiding in Your Next.js Healthcare App Right Now

Comments
1 min read
Building a Production AI Agent in Spring Boot: The Sandbox Rule (Part 11)

Building a Production AI Agent in Spring Boot: The Sandbox Rule (Part 11)

Comments
10 min read
Cloudflare OS āļ„āļ·āļ­āļ­āļ°āđ„āļĢ â€” āđāļžāļĨāļ•āļŸāļ­āļĢāđŒāļĄāđ‚āļ­āđ€āļžāđˆāļ™āļ‹āļ­āļĢāđŒāļŠāļ„āļļāļĄāļŠāļīāļ—āļ˜āļīāđŒ AI Agent āļ—āļĩāđˆāđ€āļ‚āđ‰āļēāļ–āļķāļ‡āļ‚āđ‰āļ­āļĄāļđāļĨāļ­āļ‡āļ„āđŒāļāļĢ

Cloudflare OS āļ„āļ·āļ­āļ­āļ°āđ„āļĢ â€” āđāļžāļĨāļ•āļŸāļ­āļĢāđŒāļĄāđ‚āļ­āđ€āļžāđˆāļ™āļ‹āļ­āļĢāđŒāļŠāļ„āļļāļĄāļŠāļīāļ—āļ˜āļīāđŒ AI Agent āļ—āļĩāđˆāđ€āļ‚āđ‰āļēāļ–āļķāļ‡āļ‚āđ‰āļ­āļĄāļđāļĨāļ­āļ‡āļ„āđŒāļāļĢ

Comments
2 min read
Prompt Injection Hiding in a GitHub README

Prompt Injection Hiding in a GitHub README

3
Comments
4 min read
I built training wheels for AI coding agents, then found a critical bug in them by pointing my code reviewer at them

I built training wheels for AI coding agents, then found a critical bug in them by pointing my code reviewer at them

Comments
4 min read
Catch expiring TLS certs and weak security headers in CI — with one small CLI

Catch expiring TLS certs and weak security headers in CI — with one small CLI

Comments
4 min read
Kimwolf v7: Android/IoT Botnet with HTTP/2 Browser Spoofing DDoS and ENS/Tor Three-Layer C2

Kimwolf v7: Android/IoT Botnet with HTTP/2 Browser Spoofing DDoS and ENS/Tor Three-Layer C2

Comments
9 min read
Gunra Ransomware: RaaS Exploiting FortiGate for VDI Sessions, OTP Theft, SaaS Exfiltration, and Encryption

Gunra Ransomware: RaaS Exploiting FortiGate for VDI Sessions, OTP Theft, SaaS Exfiltration, and Encryption

Comments
11 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.