DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
GHSA-PRH4-VHFH-24MJ: GHSA-PRH4-VHFH-24MJ: Information Exposure in Harbor Configuration Audit Logs

GHSA-PRH4-VHFH-24MJ: GHSA-PRH4-VHFH-24MJ: Information Exposure in Harbor Configuration Audit Logs

1
Comments
2 min read
Agent Systems Are Failing at Trust Boundaries. We Ran 332 Tests to Prove It.

Agent Systems Are Failing at Trust Boundaries. We Ran 332 Tests to Prove It.

1
Comments
6 min read
MCP Security Report — March 2026: 30 CVEs, 437K Compromised Downloads

MCP Security Report — March 2026: 30 CVEs, 437K Compromised Downloads

1
Comments
2 min read
The Security Gap in MCP Tool Servers (And What I Built to Fix It)

The Security Gap in MCP Tool Servers (And What I Built to Fix It)

Comments
6 min read
Enterprise Passkey Deployment Strategies

Enterprise Passkey Deployment Strategies

Comments
6 min read
AI Hallucination Squatting: The New Agentic Attack Vector

AI Hallucination Squatting: The New Agentic Attack Vector

Comments
12 min read
What If Your AI Ran Inside an OS Designed for It?

What If Your AI Ran Inside an OS Designed for It?

Comments
3 min read
Event-Driven Threat Detection: Building Real-Time Security on Conditional Access Gaps

Event-Driven Threat Detection: Building Real-Time Security on Conditional Access Gaps

1
Comments
8 min read
AIGoat - AI Security Playground to Attack and Defend LLMs. All Running Locally

AIGoat - AI Security Playground to Attack and Defend LLMs. All Running Locally

2
Comments 1
3 min read
Hiding Data in Plain Sight: Building Anyhide in Rust

Hiding Data in Plain Sight: Building Anyhide in Rust

4
Comments 2
5 min read
How I Secured WordPress Media Files by Building My Own Upload Restriction Plugin

How I Secured WordPress Media Files by Building My Own Upload Restriction Plugin

1
Comments
5 min read
Claude Mythos Can Find Zero-Days. What Happens When Your Coding Agent Can Too?

Claude Mythos Can Find Zero-Days. What Happens When Your Coding Agent Can Too?

3
Comments
4 min read
Architecture Documentation as a First-Class Engineering Asset

Catching systemic failures linters miss

Architecture Documentation as a First-Class Engineering Asset

49
Comments 32
7 min read
I Couldn't Find an OAuth 2.1 Proxy for MCP Servers, So I Built One

I Couldn't Find an OAuth 2.1 Proxy for MCP Servers, So I Built One

Comments
3 min read
Securing Python Package Management: Strategies to Mitigate Supply Chain Attacks and Ensure Dependency Integrity

Securing Python Package Management: Strategies to Mitigate Supply Chain Attacks and Ensure Dependency Integrity

Comments
12 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.