DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
AI Security Audit Checklist: 15 Vulnerabilities Claude Found in Production Code

AI Security Audit Checklist: 15 Vulnerabilities Claude Found in Production Code

1
Comments
12 min read
Rootless Edge Deployments: Architecting Daemonless CI/CD Pipelines with Podman and Buildah

Rootless Edge Deployments: Architecting Daemonless CI/CD Pipelines with Podman and Buildah

Comments
13 min read
Alexa, Are You Testifying Against Me?

Alexa, Are You Testifying Against Me?

10
Comments
7 min read
A macOS updater has two jobs: discover and verify

A macOS updater has two jobs: discover and verify

1
Comments
2 min read
4 Security Bugs I Found in My Own Auth System (And How I Fixed Them)

4 Security Bugs I Found in My Own Auth System (And How I Fixed Them)

1
Comments
4 min read
BdThemes API-Driven Supply Chain Compromise: Admin XSS to Web Shell and Hidden Admin

BdThemes API-Driven Supply Chain Compromise: Admin XSS to Web Shell and Hidden Admin

Comments
8 min read
mcp-observatory:一行命令扫描 MCP 服务器安全漏洞

mcp-observatory:一行命令扫描 MCP 服务器安全漏洞

Comments
1 min read
The Swarm Always Wins: How Swarm Intelligence Breaks AI

The Swarm Always Wins: How Swarm Intelligence Breaks AI

1
Comments
13 min read
From Script Kiddie to Security Methodology: Learning to Think Beyond Tools

From Script Kiddie to Security Methodology: Learning to Think Beyond Tools

Comments
5 min read
AWS IAM Privilege Escalation: Real Attack Paths DevOps Engineers Need to Know

AWS IAM Privilege Escalation: Real Attack Paths DevOps Engineers Need to Know

Comments
5 min read
Validating an EU Proof-of-Age Attestation (eu.europa.ec.av.1) Against the Trusted List

Validating an EU Proof-of-Age Attestation (eu.europa.ec.av.1) Against the Trusted List

Comments
4 min read
Stop Claude Code Push Accidents at the Machine Level: Guarding Against Leaked API Keys and Wrong-Repo Pushes

Stop Claude Code Push Accidents at the Machine Level: Guarding Against Leaked API Keys and Wrong-Repo Pushes

Comments
4 min read
AI Agents in Production: Why 88% of Enterprise Pilots Fail (2026)

AI Agents in Production: Why 88% of Enterprise Pilots Fail (2026)

Comments 4
5 min read
Prompt-level spend limits don't hold: how to actually stop an AI agent from overspending (x402, AP2, and the payment path)

Prompt-level spend limits don't hold: how to actually stop an AI agent from overspending (x402, AP2, and the payment path)

Comments
3 min read
GitHub Agentic Workflows Vulnerable to GitLost Data Leak Exploit

GitHub Agentic Workflows Vulnerable to GitLost Data Leak Exploit

Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.