DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
NoxKey — A macOS Secrets Manager With Touch ID and AI Agent Detection

NoxKey — A macOS Secrets Manager With Touch ID and AI Agent Detection

1
Comments
8 min read
Critical Security Alert: Malicious VSCode Extension "solidity-macos" Contains Backdoor

Critical Security Alert: Malicious VSCode Extension "solidity-macos" Contains Backdoor

1
Comments
9 min read
Your app doesn’t need a database. Here’s what it needs instead.

Your app doesn’t need a database. Here’s what it needs instead.

Comments 3
3 min read
4th Exploit in 5 Years: How a 9-Month Donation Attack Bypassed Venus Protocol's Supply Cap for $2.15M

4th Exploit in 5 Years: How a 9-Month Donation Attack Bypassed Venus Protocol's Supply Cap for $2.15M

1
Comments
1 min read
$1.78M Gone in 4 Minutes: When AI Code Review, Human Review, and DAO Governance All Rubber-Stamp a Broken Oracle

$1.78M Gone in 4 Minutes: When AI Code Review, Human Review, and DAO Governance All Rubber-Stamp a Broken Oracle

Comments
2 min read
The Resolv USR Exploit: How a Missing Max-Mint Check Let an Attacker Print $25M From $100K

The Resolv USR Exploit: How a Missing Max-Mint Check Let an Attacker Print $25M From $100K

Comments
6 min read
Claude Code plugin credentials: what the new keychain storage does and doesn't do

Claude Code plugin credentials: what the new keychain storage does and doesn't do

Comments
5 min read
Your AI Coding Agent Has Root Access to Your Machine. Does Anything Else?

Your AI Coding Agent Has Root Access to Your Machine. Does Anything Else?

Comments 1
21 min read
The Trivy Attack: Why SHA Pinning Fails GitHub Actions

The Trivy Attack: Why SHA Pinning Fails GitHub Actions

Comments
4 min read
AI-Native IDS: Why Edge Security Needs Machine Learning

AI-Native IDS: Why Edge Security Needs Machine Learning

Comments 1
1 min read
CAP Security & Authorization — XSUAA, @restrict & Multi-Tenant Auth

CAP Security & Authorization — XSUAA, @restrict & Multi-Tenant Auth

Comments
5 min read
We compared security in OpenClaw, Claude Code, and Cursor. None of them passed.

We compared security in OpenClaw, Claude Code, and Cursor. None of them passed.

Comments
8 min read
API Security Testing Automation: Building Comprehensive Testing Pipelines That Actually Catch Vulnerabilities

API Security Testing Automation: Building Comprehensive Testing Pipelines That Actually Catch Vulnerabilities

Comments
20 min read
The TeamPCP Supply Chain Campaign: How Compromised Security Tools Are Draining Crypto Wallets — A DeFi Developer's Defense Playbook

The TeamPCP Supply Chain Campaign: How Compromised Security Tools Are Draining Crypto Wallets — A DeFi Developer's Defense Playbook

Comments
8 min read
Don't Lose Your IP Through Your MCP

Don't Lose Your IP Through Your MCP

Comments
12 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.