DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Bitwarden vs Vaultwarden: Which to Self-Host?

Bitwarden vs Vaultwarden: Which to Self-Host?

Comments
4 min read
CAP Security & Authorization — XSUAA, @restrict & Multi-Tenant Auth

CAP Security & Authorization — XSUAA, @restrict & Multi-Tenant Auth

1
Comments
5 min read
The Trivy Attack: Why SHA Pinning Fails GitHub Actions

The Trivy Attack: Why SHA Pinning Fails GitHub Actions

1
Comments
4 min read
I got tired of pasting sensitive strings into random websites, so I built a browser-based hash generator

I got tired of pasting sensitive strings into random websites, so I built a browser-based hash generator

Comments
2 min read
Your Terraform Is Probably Insecure — Here Are 90 Patterns to Check

Your Terraform Is Probably Insecure — Here Are 90 Patterns to Check

Comments
4 min read
AI News Roundup: Claude Code Security, ggml.ai + Hugging Face, and 17K tok/s Silicon Llama

AI News Roundup: Claude Code Security, ggml.ai + Hugging Face, and 17K tok/s Silicon Llama

Comments
3 min read
AI News Roundup: India’s AI Summit, OpenAI Lockdown Mode, and On‑Device Multilingual Models

AI News Roundup: India’s AI Summit, OpenAI Lockdown Mode, and On‑Device Multilingual Models

1
Comments
4 min read
CVE-2026-2472: Poisoned Notebooks: Stored XSS in Google Vertex AI SDK

CVE-2026-2472: Poisoned Notebooks: Stored XSS in Google Vertex AI SDK

Comments
2 min read
Authelia vs Authentik: Which Auth Server?

Authelia vs Authentik: Which Auth Server?

Comments
4 min read
Secure by Design: Managing Docker Swarm Secrets the SwarmCLI Way

Secure by Design: Managing Docker Swarm Secrets the SwarmCLI Way

Comments
3 min read
What Delve Got Wrong: Why Compliance Evidence Needs to Be Cryptographically Provable

What Delve Got Wrong: Why Compliance Evidence Needs to Be Cryptographically Provable

1
Comments
3 min read
We kept thinking SentinelGate was ready. It wasn't.

We kept thinking SentinelGate was ready. It wasn't.

Comments
6 min read
We built a free CRA compliance scorer into a silicon advisor. Here's what we learned.

We built a free CRA compliance scorer into a silicon advisor. Here's what we learned.

1
Comments
3 min read
CVE-2026-25896: Regex Injection in fast-xml-parser: Shadowing the <

CVE-2026-25896: Regex Injection in fast-xml-parser: Shadowing the <

Comments
2 min read
Default-Deny Policies: Why Your AI Agent Can't Touch What You Don't Allow

Default-Deny Policies: Why Your AI Agent Can't Touch What You Don't Allow

Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.