DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
How I built a kernel-enforced sandbox for LLM agent tool calls

How I built a kernel-enforced sandbox for LLM agent tool calls

Comments
3 min read
The SPF redirect trap: why -all can make redirect= useless

The SPF redirect trap: why -all can make redirect= useless

Comments
4 min read
Runtime over Prompt: Why the System Prompt Is Not a Security Boundary

Runtime over Prompt: Why the System Prompt Is Not a Security Boundary

Comments 4
6 min read
Supabase RLS is great. Here's the part you'll still build yourself.

Supabase RLS is great. Here's the part you'll still build yourself.

Comments 1
6 min read
🌐 What is Networking? (The Backbone of Cyber Security)

🌐 What is Networking? (The Backbone of Cyber Security)

3
Comments
1 min read
I Gave an AI Agent Unrestricted Shell Access. Here's What Happened Next.

I Gave an AI Agent Unrestricted Shell Access. Here's What Happened Next.

1
Comments
12 min read
Your AI agent doesn't read READMEs — we scored 95,000 packages to see what it's installing anyway

Your AI agent doesn't read READMEs — we scored 95,000 packages to see what it's installing anyway

Comments
4 min read
Machine Learning Security Training for Government Agencies

Machine Learning Security Training for Government Agencies

Comments
5 min read
Oracle WebLogic Proxy Plug-in Flaw Hits CISA KEV: CVSS 10.0, Unauthenticated, Exploited Since February

Oracle WebLogic Proxy Plug-in Flaw Hits CISA KEV: CVSS 10.0, Unauthenticated, Exploited Since February

Comments
5 min read
Using an AST to validate AI-generated PostgreSQL before it runs

Using an AST to validate AI-generated PostgreSQL before it runs

Comments
3 min read
Your Compute-Usage Receipt Can Be Cryptographically Signed and Still Be Forged. Here's the One Field That Actually Prevents It, From the Command Line.

Your Compute-Usage Receipt Can Be Cryptographically Signed and Still Be Forged. Here's the One Field That Actually Prevents It, From the Command Line.

2
Comments
11 min read
Fine-Tuning IBM Granite 4.1 8B for Banking-Specific AI Guardrails

Fine-Tuning IBM Granite 4.1 8B for Banking-Specific AI Guardrails

Comments
5 min read
The RLS Policy Was Correct. The Write Was Still Wrong.

The RLS Policy Was Correct. The Write Was Still Wrong.

Comments
3 min read
An AI pentest agent that structurally can't hallucinate a vulnerability — and runs offline

An AI pentest agent that structurally can't hallucinate a vulnerability — and runs offline

Comments
3 min read
Building a privacy- first Android app: What i learned while creating Xsilent app

Building a privacy- first Android app: What i learned while creating Xsilent app

2
Comments
2 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.