DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
We built an AI smart contract auditor for $199 — here's how

We built an AI smart contract auditor for $199 — here's how

Comments
3 min read
The Risks of Sharing Internal Source Code via External Tools

The Risks of Sharing Internal Source Code via External Tools

Comments
4 min read
What Is Browser Fingerprinting? How Websites Track You Without Cookies (2026)

What Is Browser Fingerprinting? How Websites Track You Without Cookies (2026)

Comments
4 min read
OWASP Agentic Top 10 — What Every AI Developer Should Know in 2026

OWASP Agentic Top 10 — What Every AI Developer Should Know in 2026

Comments
8 min read
Is Your Claude Code Safe From Base64? Inside 2026 AI Agent Attacks

Is Your Claude Code Safe From Base64? Inside 2026 AI Agent Attacks

7
Comments 1
31 min read
Why Strict "Zero Trust" Breaks Secret Management (And How We Built a Zero-Persistence Vault Instead)

Why Strict "Zero Trust" Breaks Secret Management (And How We Built a Zero-Persistence Vault Instead)

4
Comments
3 min read
78% of Production AI Systems Score F on Prompt Defense — Data from 1,646 Leaked System Prompts

78% of Production AI Systems Score F on Prompt Defense — Data from 1,646 Leaked System Prompts

Comments
7 min read
Essential SSL Certificate Validity Facts to Protect Sites

Essential SSL Certificate Validity Facts to Protect Sites

Comments
7 min read
Passwordless Login Needs Less Than Passkeys

Passwordless Login Needs Less Than Passkeys

Comments
6 min read
npm Publish Without Tokens

npm Publish Without Tokens

Comments
3 min read
Checkov's OIDC Bug: Why CKV_AWS_358 Misses 80% of Misconfigurations

Checkov's OIDC Bug: Why CKV_AWS_358 Misses 80% of Misconfigurations

Comments
3 min read
The Compliance Trap: Why 90% of Security Scans are Technically Correct but Strategically Worthless

The Compliance Trap: Why 90% of Security Scans are Technically Correct but Strategically Worthless

Comments
7 min read
Why I built attack-chain correlation on top of Semgrep and Joern

Why I built attack-chain correlation on top of Semgrep and Joern

Comments
3 min read
Securing Package Manager Postinstall Scripts: Mitigating Access to Sensitive User Data During Installation

Securing Package Manager Postinstall Scripts: Mitigating Access to Sensitive User Data During Installation

Comments
8 min read
Why AI Agent Authorization Is Still Unsolved in 2026

Why AI Agent Authorization Is Still Unsolved in 2026

Comments
7 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.