DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
JWT Algorithm Confusion Attack: Two Active CVEs in 2026

JWT Algorithm Confusion Attack: Two Active CVEs in 2026

1
Comments 1
4 min read
GHSA-JP3Q-WWP3-PWV9: Freeform, Free Execution: Stored XSS in Craft CMS's Favorite Form Builder

GHSA-JP3Q-WWP3-PWV9: Freeform, Free Execution: Stored XSS in Craft CMS's Favorite Form Builder

Comments
2 min read
Aider + OpenClaw: How Autonomous Exploit Generators Rewrite the Rules of Security Research

Aider + OpenClaw: How Autonomous Exploit Generators Rewrite the Rules of Security Research

2
Comments
4 min read
Every protocol your agent speaks, scanned

Every protocol your agent speaks, scanned

Comments
4 min read
Your AI Agent Just Ran rm -rf / — Here's How to Stop It

Your AI Agent Just Ran rm -rf / — Here's How to Stop It

Comments 2
3 min read
I Found an API Key I Deleted 18 Months Ago Still Living in My Git History

I Found an API Key I Deleted 18 Months Ago Still Living in My Git History

Comments
5 min read
We Built an Open-Source Prompt Injection Attack Console. Here's Why.

We Built an Open-Source Prompt Injection Attack Console. Here's Why.

1
Comments 2
3 min read
When AI Agents Talk to Each Other, Who's Listening? Building Inter-Agent Security

When AI Agents Talk to Each Other, Who's Listening? Building Inter-Agent Security

Comments 2
4 min read
Opt-In Safety Is Just Liability Transfer

Opt-In Safety Is Just Liability Transfer

1
Comments 1
4 min read
Your AI Agent Has Root Access to Your Laptop. Here's How to Fix That.

Your AI Agent Has Root Access to Your Laptop. Here's How to Fix That.

Comments 2
3 min read
Mapping AI Infrastructure to the EU AI Act and ISO 42001

Mapping AI Infrastructure to the EU AI Act and ISO 42001

3
Comments
3 min read
How We Architect AI Governance for Real-World Infrastructure

How We Architect AI Governance for Real-World Infrastructure

2
Comments
3 min read
GHSA-F456-RF33-4626: Mocking the Mock: RCE via Orval Code Generation

GHSA-F456-RF33-4626: Mocking the Mock: RCE via Orval Code Generation

Comments
2 min read
Passkeys Done Right: The Parts Nobody Mentions Until Something Breaks

Passkeys Done Right: The Parts Nobody Mentions Until Something Breaks

Comments
7 min read
AI-Generated Backends Break in Production. We Replaced Code with Specs.

AI-Generated Backends Break in Production. We Replaced Code with Specs.

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.