DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
There are characters you cannot see

There are characters you cannot see

Comments 1
4 min read
Hunting MFA Fatigue in Sentinel: Building the Detection One Line at a Time

Hunting MFA Fatigue in Sentinel: Building the Detection One Line at a Time

Comments
4 min read
Agent Memory Poisoning: Why Content Screening and Provenance Ranking Can't Stop Persistent False Information

Agent Memory Poisoning: Why Content Screening and Provenance Ranking Can't Stop Persistent False Information

Comments
4 min read
I Built an Open-Source Toolkit for AI Watermark & Provenance Forensics

I Built an Open-Source Toolkit for AI Watermark & Provenance Forensics

Comments
3 min read
Keep your API keys out of your AI agent: a credential pattern for MCP servers

Keep your API keys out of your AI agent: a credential pattern for MCP servers

1
Comments 4
4 min read
How I Found an SSRF in an AI SDK's OAuth Metadata Discovery

How I Found an SSRF in an AI SDK's OAuth Metadata Discovery

6
Comments
6 min read
We benchmarked a security detector against 500k lines of Go. It found a real bug.

We benchmarked a security detector against 500k lines of Go. It found a real bug.

Comments
3 min read
Quipu: cifrado post-cuĂĄntico en Rust puro, con una rueda para Python

Quipu: cifrado post-cuĂĄntico en Rust puro, con una rueda para Python

Comments
2 min read
OWASP Top 10: A05 & A06 — Injection and Insecure Design

OWASP Top 10: A05 & A06 — Injection and Insecure Design

Comments
1 min read
The filter missed. The schema held. Neither is where the guarantee lives.

The filter missed. The schema held. Neither is where the guarantee lives.

Comments
5 min read
Everyone Greps for SQL Injection. Nobody Greps for the Other Eight.

Everyone Greps for SQL Injection. Nobody Greps for the Other Eight.

3
Comments 2
4 min read
The Real Risk of Ignoring API Security (And What the Data Actually Shows)

The Real Risk of Ignoring API Security (And What the Data Actually Shows)

5
Comments
4 min read
Google SAM (Sovereign Agent Mesh): The Secure Networking Layer for AI Agents

Google SAM (Sovereign Agent Mesh): The Secure Networking Layer for AI Agents

1
Comments
5 min read
Dictionary Pattern Matching in Some Languages Ignores Unspecified Keys, Risks Unexpected Bugs

Dictionary Pattern Matching in Some Languages Ignores Unspecified Keys, Risks Unexpected Bugs

Comments
10 min read
Marketplace SaaS Exports: Object Storage Signed URL Expiration After User Authorization

Marketplace SaaS Exports: Object Storage Signed URL Expiration After User Authorization

Comments
7 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.