DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Moving from 'checking reviews' to 'running campaigns': The Agentic workflow shift

Moving from 'checking reviews' to 'running campaigns': The Agentic workflow shift

2
Comments
4 min read
Don't send secrets to your LLM: a pre-send scanner that never stores what it finds

Don't send secrets to your LLM: a pre-send scanner that never stores what it finds

Comments
6 min read
Building CipherBite: An Offline Text Encryption App to Share Credentials Securely

Building CipherBite: An Offline Text Encryption App to Share Credentials Securely

2
Comments 1
3 min read
How to let users bring their own OpenAI or Anthropic API keys (without storing them in plaintext)

How to let users bring their own OpenAI or Anthropic API keys (without storing them in plaintext)

6
Comments 3
5 min read
Why I Stopped Fighting Burp and Built My Own Listener

Why I Stopped Fighting Burp and Built My Own Listener

6
Comments
5 min read
Applying Bandit SAST to Detect Vulnerabilities in a Python Flask Application

Applying Bandit SAST to Detect Vulnerabilities in a Python Flask Application

Comments
3 min read
Applying Bandit SAST to Detect Vulnerabilities in a Python Flask Application

Applying Bandit SAST to Detect Vulnerabilities in a Python Flask Application

Comments
3 min read
My Upload Check Trusted the Attacker's Word: 8 Bytes Fixed It

Summer Bug Smash: Smash Stories 🐛🛹

My Upload Check Trusted the Attacker's Word: 8 Bytes Fixed It

1
Comments
4 min read
How to Verify an AI Crawler Is Who It Says It Is

How to Verify an AI Crawler Is Who It Says It Is

Comments 5
7 min read
STAC4749: Chaos Ransomware in Under 17 Hours via Teams IT Support Scam

STAC4749: Chaos Ransomware in Under 17 Hours via Teams IT Support Scam

Comments
5 min read
KindaRails2Shell (CVE-2026-66066): Arbitrary File Read and RCE via Active Storage Uploads

KindaRails2Shell (CVE-2026-66066): Arbitrary File Read and RCE via Active Storage Uploads

Comments
6 min read
RufRoot (CVE-2026-59726): Full Compromise of AI Agent Infrastructure via Unauthenticated MCP Bridge

RufRoot (CVE-2026-59726): Full Compromise of AI Agent Infrastructure via Unauthenticated MCP Bridge

Comments
5 min read
GTIG: 2026 OSS Supply Chain Compromise, Credential Theft, and Self-Propagation

GTIG: 2026 OSS Supply Chain Compromise, Credential Theft, and Self-Propagation

Comments
5 min read
TA488 OWAReaper: A "Half-Click" Attack that Adds Persistence Inside OWA Just by Opening an Email

TA488 OWAReaper: A "Half-Click" Attack that Adds Persistence Inside OWA Just by Opening an Email

Comments
5 min read
How AegisLink's handshake survives a quantum computer (X3DH + ML-KEM-768)

How AegisLink's handshake survives a quantum computer (X3DH + ML-KEM-768)

Comments
3 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.