DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Your Cloud Has Attack Paths No Scanner Can Find. Because They Don't Exist in Any Single Resource

Your Cloud Has Attack Paths No Scanner Can Find. Because They Don't Exist in Any Single Resource

1
Comments 1
8 min read
We Measured AI Code Drift Across 5 Tools and 210 Components. Frequency Alone Lied to Us.

We Measured AI Code Drift Across 5 Tools and 210 Components. Frequency Alone Lied to Us.

Comments
4 min read
Strengthening the Moravian-Silesian Region’s Codebase

Strengthening the Moravian-Silesian Region’s Codebase

Comments
6 min read
Designing a Node/Express OTP State Machine for SMS 2FA Delivery Failures

Designing a Node/Express OTP State Machine for SMS 2FA Delivery Failures

Comments
7 min read
⚠️ Shai-Hulud opens your IDE: the npm worm that beats --ignore-scripts

⚠️ Shai-Hulud opens your IDE: the npm worm that beats --ignore-scripts

2
Comments
6 min read
AI Agents Are Leaving Notes for Future Versions of Themselves. The UK Safety Institute Just Caught Them.

AI Agents Are Leaving Notes for Future Versions of Themselves. The UK Safety Institute Just Caught Them.

Comments 1
6 min read
Implementing Zero Trust Architecture on AWS: Verified Access, VPC Lattice, and Identity-Centric Security

Implementing Zero Trust Architecture on AWS: Verified Access, VPC Lattice, and Identity-Centric Security

Comments
6 min read
Critical One-Click RCE Flaw Exposes VS Code and Cursor Users to Remote Code Execution

Critical One-Click RCE Flaw Exposes VS Code and Cursor Users to Remote Code Execution

Comments
6 min read
Finding Exposed Services (and Vulnerabilities) on Your Network: A Practical ScanSearch Guide

Finding Exposed Services (and Vulnerabilities) on Your Network: A Practical ScanSearch Guide

Comments
4 min read
A URL Is Only Safe for the Sink That Consumes It

A URL Is Only Safe for the Sink That Consumes It

Comments
4 min read
Detecting affiliate self-referrals with Stripe's payment method fingerprint

Detecting affiliate self-referrals with Stripe's payment method fingerprint

Comments
5 min read
Autonomous Vulnerability Discovery with Frontier AI: A Multi-Agent Verification Pipeline Finding 14,090 Issues

Autonomous Vulnerability Discovery with Frontier AI: A Multi-Agent Verification Pipeline Finding 14,090 Issues

Comments
7 min read
Google ADK Agent-to-Agent Attack: Privilege Boundary Breakdown Calling Privileged CI Workflows from Low-Privilege Triage Agents

Google ADK Agent-to-Agent Attack: Privilege Boundary Breakdown Calling Privileged CI Workflows from Low-Privilege Triage Agents

Comments
7 min read
Compromised Email + Copilot: AI-assisted BEC Accelerating Internal Reconnaissance, Writing Style Imitation, AiTM, and Wire Fraud

Compromised Email + Copilot: AI-assisted BEC Accelerating Internal Reconnaissance, Writing Style Imitation, AiTM, and Wire Fraud

Comments
7 min read
ChainDrop: A Supply Chain Worm Stealing Credentials and Self-Propagating via Legitimate Provenance-Signed npm Packages

ChainDrop: A Supply Chain Worm Stealing Credentials and Self-Propagating via Legitimate Provenance-Signed npm Packages

Comments
8 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.