DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
A Rogue Registry in My Own Backyard: Anatomy of a Two-Line Supply Chain Attack

A Rogue Registry in My Own Backyard: Anatomy of a Two-Line Supply Chain Attack

1
Comments
6 min read
Before Grok Build Uploads Your Repo, Show the Outbound Receipt

Before Grok Build Uploads Your Repo, Show the Outbound Receipt

Comments 2
4 min read
Your AI agent called a tool. Can you prove it followed the rules?

Your AI agent called a tool. Can you prove it followed the rules?

1
Comments
2 min read
HS256 vs RS256: Which JWT Signing Algorithm Does Your Auth Provider Actually Use?

HS256 vs RS256: Which JWT Signing Algorithm Does Your Auth Provider Actually Use?

Comments 3
3 min read
How to Audit Your MCP Servers for Security Risks

How to Audit Your MCP Servers for Security Risks

Comments
7 min read
Your Baby Monitor's Biggest Security Flaw Isn't Hackers. It's the Company That Built It.

Your Baby Monitor's Biggest Security Flaw Isn't Hackers. It's the Company That Built It.

Comments
3 min read
What I Did During My Summer Vacation: Day 1 - My First 10 Bug Bounty Reports

What I Did During My Summer Vacation: Day 1 - My First 10 Bug Bounty Reports

Comments
2 min read
vrp-ir 0.9.0: a line-cited security audit for Huawei VRP/USG configs

vrp-ir 0.9.0: a line-cited security audit for Huawei VRP/USG configs

Comments
2 min read
Preparing Enterprise Distributed Systems for the Post-Quantum Cryptography Shift

Preparing Enterprise Distributed Systems for the Post-Quantum Cryptography Shift

Comments
2 min read
Hello DEV! I'm Plugecon — security developer

Hello DEV! I'm Plugecon — security developer

Comments
1 min read
BloodHound for AI Agents Means We've Officially Given Up Pretending This Is Simple

BloodHound for AI Agents Means We've Officially Given Up Pretending This Is Simple

2
Comments 6
3 min read
My Repo's Own Safety Hook Found 8 "Unverified" Commits and Told Me to Rewrite Them

My Repo's Own Safety Hook Found 8 "Unverified" Commits and Told Me to Rewrite Them

Comments
4 min read
Beyond Prompt Injection: The Non-Human Authorization Gap in Enterprise AI

Beyond Prompt Injection: The Non-Human Authorization Gap in Enterprise AI

48
Comments 2
3 min read
【Sofi_Log #034】肉体のガベージコレクション:脳と細胞のメモリリークを解消する『オートファジー起動仕様書』

【Sofi_Log #034】肉体のガベージコレクション:脳と細胞のメモリリークを解消する『オートファジー起動仕様書』

1
Comments
7 min read
How we almost merged malware into an open-source project today.

How we almost merged malware into an open-source project today.

4
Comments 3
2 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.