DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
khunt: SQL Injection to Resident Threat Inside Oracle Database Stealing Credentials with SYSTEM Privileges

khunt: SQL Injection to Resident Threat Inside Oracle Database Stealing Credentials with SYSTEM Privileges

Comments
7 min read
Langflow CVE-2026-9198: Active Exploitation RCE via Auto-Login Superuser Token and Code Validator `exec()` Chain

Langflow CVE-2026-9198: Active Exploitation RCE via Auto-Login Superuser Token and Code Validator `exec()` Chain

Comments
7 min read
Prompt Injection Attacks in AI: Real Examples and Prevention Strategies

Prompt Injection Attacks in AI: Real Examples and Prevention Strategies

Comments
2 min read
An agent can't approve its own change: binding PR approval to the exact diff

An agent can't approve its own change: binding PR approval to the exact diff

1
Comments 1
5 min read
Your AI agent should not have unrestricted power

Your AI agent should not have unrestricted power

1
Comments
3 min read
Encrypting personal data at rest in Symfony: a 60-line Doctrine type, and the four things it breaks

Encrypting personal data at rest in Symfony: a 60-line Doctrine type, and the four things it breaks

5
Comments 2
13 min read
Linux LUKS Vulnerability, Android Developer Verification Threat, GitHub Secret Scanning Guide

Linux LUKS Vulnerability, Android Developer Verification Threat, GitHub Secret Scanning Guide

Comments
3 min read
The 2026 OWASP list opens with the sentence my system spent four months learning

The 2026 OWASP list opens with the sentence my system spent four months learning

3
Comments 3
16 min read
Your AI agent just took an action in production. Can you answer five questions about it?

Your AI agent just took an action in production. Can you answer five questions about it?

Comments
4 min read
Shai-Hulud Strikes Back: Keyv, Cacheable & 800+ npm Packages Hijacked in Massive Worm Attack

Shai-Hulud Strikes Back: Keyv, Cacheable & 800+ npm Packages Hijacked in Massive Worm Attack

Comments 3
5 min read
AI Agent Sandboxing: Contain the Blast Radius

AI Agent Sandboxing: Contain the Blast Radius

2
Comments 2
9 min read
Stateless auth without a database round-trip: how Bondify's proof model works

Stateless auth without a database round-trip: how Bondify's proof model works

Comments
4 min read
Cloudflare AI Gateway User Insights: Spend Checklist

Cloudflare AI Gateway User Insights: Spend Checklist

Comments
6 min read
Docker Security Dispatch — Issue 5: AI Security, Hugging Face Incident, and Agent Baseline 📡

Docker Security Dispatch — Issue 5: AI Security, Hugging Face Incident, and Agent Baseline 📡

6
Comments 1
9 min read
We Pulled a Rule From Our AI Linter — Here's Why It Made the Tool Better

We Pulled a Rule From Our AI Linter — Here's Why It Made the Tool Better

5
Comments 1
4 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.