DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
How .pth Files Became a Supply Chain Weapon (and How to Detect Them)

How .pth Files Became a Supply Chain Weapon (and How to Detect Them)

Comments
1 min read
How I Secured My AI Assistant's Data by Moving It Off the Internet-Facing Machine

How I Secured My AI Assistant's Data by Moving It Off the Internet-Facing Machine

Comments
4 min read
The LiteLLM Supply Chain Attack: How a Poisoned Security Scanner Stole Credentials From Thousands of AI Environments

The LiteLLM Supply Chain Attack: How a Poisoned Security Scanner Stole Credentials From Thousands of AI Environments

Comments
9 min read
Your Claude Code Agent Is Executing Shell Commands With Zero Validation. Here's Why That's a Problem.

Your Claude Code Agent Is Executing Shell Commands With Zero Validation. Here's Why That's a Problem.

Comments
4 min read
Malicious litellm Python Package Versions 1.82.7 and 1.82.8 Removed from PyPI to Prevent Credential Theft

Malicious litellm Python Package Versions 1.82.7 and 1.82.8 Removed from PyPI to Prevent Credential Theft

Comments
6 min read
Thinking Like an Attacker: The Airbags and Seatbelts of Smart Contract Security

Thinking Like an Attacker: The Airbags and Seatbelts of Smart Contract Security

7
Comments 2
7 min read
🛡️ حل احترافي لثغرة Prototype Pollution في protobufjs

🛡️ حل احترافي لثغرة Prototype Pollution في protobufjs

2
Comments 1
3 min read
Your AI Agent Just Paid a Sanctioned Russian Bank. Nobody Stopped It.

Your AI Agent Just Paid a Sanctioned Russian Bank. Nobody Stopped It.

Comments
3 min read
TIL: Ruby Authenticity Tokens - Reusing the HTML Value

TIL: Ruby Authenticity Tokens - Reusing the HTML Value

1
Comments
2 min read
Why the $292M KelpDAO Exploit Proves Smart Contract Audits Aren't Enough.

Why the $292M KelpDAO Exploit Proves Smart Contract Audits Aren't Enough.

2
Comments
1 min read
The Dark Forest Internet

The Dark Forest Internet

Comments
6 min read
🚨 تنبيه أمني عاجل - ثغرة حرجة في tj-actions/changed-files

🚨 تنبيه أمني عاجل - ثغرة حرجة في tj-actions/changed-files

Comments
3 min read
The ORM Didn't Save You: SQL Injection in a Prisma Codebase

The ORM Didn't Save You: SQL Injection in a Prisma Codebase

Comments
4 min read
VoxMind: A Secure, Local-First Voice AI Agent on the Edge

VoxMind: A Secure, Local-First Voice AI Agent on the Edge

3
Comments 1
3 min read
Air Traffic Control Scaleway Ep.1

Air Traffic Control Scaleway Ep.1

Comments
9 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.