DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Why AI Agents Will Become a New Attack Surface

Why AI Agents Will Become a New Attack Surface

Comments 1
13 min read
Angular Security Headers: A Practical Guide to Securing Your Angular Application

Angular Security Headers: A Practical Guide to Securing Your Angular Application

1
Comments
1 min read
25 Findings, One Mobile App: What a Real Pentest Report Taught Me About React Native Security

25 Findings, One Mobile App: What a Real Pentest Report Taught Me About React Native Security

Comments 1
4 min read
Do You Really Need Python to Build AI Agents and Test Their Security?

Do You Really Need Python to Build AI Agents and Test Their Security?

Comments
4 min read
I let an AI agent run my trading bots unattended. It broke twice before I built a gate to stop it.

I let an AI agent run my trading bots unattended. It broke twice before I built a gate to stop it.

Comments
4 min read
MCP Tool Poisoning: A Name Allowlist Is Not Enough

MCP Tool Poisoning: A Name Allowlist Is Not Enough

1
Comments 2
7 min read
Why 'monitoring' isn't enough for AI agents — and how I made delegation cryptographically verifiable

Why 'monitoring' isn't enough for AI agents — and how I made delegation cryptographically verifiable

2
Comments 5
4 min read
The LiteLLM Supply Chain Backdoor: What 3 Hours Means for Your AI Agent Gateway

The LiteLLM Supply Chain Backdoor: What 3 Hours Means for Your AI Agent Gateway

7
Comments 2
5 min read
Your Self-Hosted AI Stack Just Landed on CISA's Exploited Vulnerabilities List

Your Self-Hosted AI Stack Just Landed on CISA's Exploited Vulnerabilities List

7
Comments 2
6 min read
Governance Attack Surface Review: Bybit

Governance Attack Surface Review: Bybit

Comments
6 min read
Authorizer 2.4: Open-source auth for AI agents and modern enterprise apps

Authorizer 2.4: Open-source auth for AI agents and modern enterprise apps

1
Comments 1
5 min read
A credential fetch is a read: the containment guard your write-target sandbox was missing

A credential fetch is a read: the containment guard your write-target sandbox was missing

1
Comments
3 min read
Gas Optimization Audit: Gauntlet

Gas Optimization Audit: Gauntlet

Comments
6 min read
Exploitation of Langflow CVE-2026-0768: From Unauthenticated Root RCE to Secret Theft and Lateral Movement

Exploitation of Langflow CVE-2026-0768: From Unauthenticated Root RCE to Secret Theft and Lateral Movement

1
Comments
5 min read
AI Experiment: Porting a PLC Exploit Takes Hours and Hundreds of Dollars

AI Experiment: Porting a PLC Exploit Takes Hours and Hundreds of Dollars

1
Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.