DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Security Fundamentals for Web Developers: Authentication, Authorization, and the Attacks You Need to Prevent

Security Fundamentals for Web Developers: Authentication, Authorization, and the Attacks You Need to Prevent

1
Comments 2
9 min read
OWASP Cornucopia Mobile App Edition v2.0

OWASP Cornucopia Mobile App Edition v2.0

Comments 1
8 min read
PaperCut Zero-Day: Why 'Boring' Internal Apps Get Hit First

PaperCut Zero-Day: Why 'Boring' Internal Apps Get Hit First

Comments 1
4 min read
A one-line access check that silently checked nothing

A one-line access check that silently checked nothing

Comments
3 min read
Your Security Scanner Has a Blind Spot: Streaming

Your Security Scanner Has a Blind Spot: Streaming

1
Comments
5 min read
I built an API client that runs in your browser. Here's how I handled CORS without running an open proxy

I built an API client that runs in your browser. Here's how I handled CORS without running an open proxy

1
Comments 15
3 min read
PKCS#11 Nedir? Python ve C# ile Akıllı Kart Okuma Temelleri

PKCS#11 Nedir? Python ve C# ile Akıllı Kart Okuma Temelleri

Comments
1 min read
Fail closed: what my AI guard dog does when it doesn't know

Fail closed: what my AI guard dog does when it doesn't know

1
Comments 1
3 min read
Türkiye'de E-İmza ve E-Dönüşüm Mimarisi: PKI, Akıllı Kartlar ve Yazılımcı Rehberi

Türkiye'de E-İmza ve E-Dönüşüm Mimarisi: PKI, Akıllı Kartlar ve Yazılımcı Rehberi

Comments
2 min read
Blocking `<script>` Won't Stop innerHTML XSS. `setHTML()` Will.

Blocking `<script>` Won't Stop innerHTML XSS. `setHTML()` Will.

8
Comments
7 min read
I run browser automation inside a disposable VM

I run browser automation inside a disposable VM

Comments
8 min read
Grok's Zero-Click Chat Leak: When Encrypted Text Becomes a Trusted Instruction

Grok's Zero-Click Chat Leak: When Encrypted Text Becomes a Trusted Instruction

6
Comments 4
6 min read
I Did Recon on My Own Company , Using Only What We Published.

I Did Recon on My Own Company , Using Only What We Published.

4
Comments
3 min read
Where Should I Store a JWT? localStorage, Cookies, and the XSS/CSRF Trade-off

Where Should I Store a JWT? localStorage, Cookies, and the XSS/CSRF Trade-off

2
Comments
11 min read
How CIDS Should Handle Conflicting Security Signals.

How CIDS Should Handle Conflicting Security Signals.

Comments
5 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.