DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
DeepSeek and Hermes: An Autonomous Attack Platform for Reconnaissance, PoC Acquisition, and Target Selection

DeepSeek and Hermes: An Autonomous Attack Platform for Reconnaissance, PoC Acquisition, and Target Selection

Comments
5 min read
Detecting Supply-Chain Malware Without Running the Code

Detecting Supply-Chain Malware Without Running the Code

Comments
3 min read
Boundary Escape in Claude Evaluation Environment: Real-World Incidents at 3 Organizations and Malicious PyPI Package Publication

Boundary Escape in Claude Evaluation Environment: Real-World Incidents at 3 Organizations and Malicious PyPI Package Publication

Comments
6 min read
Adform Delivery Script Compromised: Wallet Addresses Replaced on Clipboard and Screen

Adform Delivery Script Compromised: Wallet Addresses Replaced on Clipboard and Screen

Comments
5 min read
Undisclosed 0-Days, OpenZL for Zero-Trust, and Reddit's Anti-Spam Architecture

Undisclosed 0-Days, OpenZL for Zero-Trust, and Reddit's Anti-Spam Architecture

1
Comments
3 min read
From Regex to AST: Building Taint Tracking for AI Agent Code

From Regex to AST: Building Taint Tracking for AI Agent Code

2
Comments 2
3 min read
A Review Checklist Before You Import External AI Agent Definitions

A Review Checklist Before You Import External AI Agent Definitions

1
Comments
7 min read
The Checkout Intercept: How Cybercriminals Steal Your Card Data Without Touching Your Phone

The Checkout Intercept: How Cybercriminals Steal Your Card Data Without Touching Your Phone

Comments
6 min read
Building Identity-Gated Refusal Tiers for AI Security Tools

Building Identity-Gated Refusal Tiers for AI Security Tools

Comments 2
4 min read
We Measured AI Code Drift Across 5 Tools. Frequency Alone Lied to Us.

We Measured AI Code Drift Across 5 Tools. Frequency Alone Lied to Us.

Comments 2
4 min read
Building a Production-Grade OAuth 2.1 + OpenID Connect Authorization Server from Scratch

Building a Production-Grade OAuth 2.1 + OpenID Connect Authorization Server from Scratch

Comments
3 min read
Security triage shouldn't happen in another browser tab.

Security triage shouldn't happen in another browser tab.

Comments
4 min read
Two Hacks, One Day, Two Completely Different Attack Surfaces

Two Hacks, One Day, Two Completely Different Attack Surfaces

Comments
4 min read
The AWS Security Lifecycle and Its Key Services

The AWS Security Lifecycle and Its Key Services

Comments
2 min read
Best Self-Hosted WAFs on GitHub: 5 Tools Compared in 2026

Best Self-Hosted WAFs on GitHub: 5 Tools Compared in 2026

9
Comments 3
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.