DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Your Agent's Memory Has a Tax and a Backdoor. Audit Both in 40 Lines

Your Agent's Memory Has a Tax and a Backdoor. Audit Both in 40 Lines

Comments
10 min read
Weekly roundup: Password strength, self-serve BAA, and AI updates

Weekly roundup: Password strength, self-serve BAA, and AI updates

8
Comments
2 min read
Top 5 LLM Gateways for Securing Your AI Apps

Top 5 LLM Gateways for Securing Your AI Apps

Comments
8 min read
I Audited 5 AI-Built Apps for Security. All 5 Had Critical Vulnerabilities. Tags: #security #ai #webdev #programming #cybersecurity

I Audited 5 AI-Built Apps for Security. All 5 Had Critical Vulnerabilities. Tags: #security #ai #webdev #programming #cybersecurity

Comments
3 min read
Rate-limiting anonymous users with no login, no Redis — just a cookie and an IP

Rate-limiting anonymous users with no login, no Redis — just a cookie and an IP

Comments
9 min read
Top AI Security Risks Every Developer Should Understand in 2026

Top AI Security Risks Every Developer Should Understand in 2026

Comments
2 min read
CBC Bit Flipping Explained: Why Encryption Alone Doesn't Guarantee Integrity

CBC Bit Flipping Explained: Why Encryption Alone Doesn't Guarantee Integrity

1
Comments
3 min read
Cloudflare Tunnel Advanced Guide: Docker, Zero Trust and HA Setup

Cloudflare Tunnel Advanced Guide: Docker, Zero Trust and HA Setup

Comments
6 min read
I added a Claude Code command that runs an OWASP security audit on any file before I ship it

I added a Claude Code command that runs an OWASP security audit on any file before I ship it

Comments
1 min read
X Just Shipped an MCP Server. It Exposes 131 Tools With Zero Access Control.

X Just Shipped an MCP Server. It Exposes 131 Tools With Zero Access Control.

Comments
4 min read
Why Prompt Guardrails Fail for AI Agent Safety (And What Works Instead)

Why Prompt Guardrails Fail for AI Agent Safety (And What Works Instead)

Comments
7 min read
Tool-Result Injection: The MCP Attack System Prompts Miss

Tool-Result Injection: The MCP Attack System Prompts Miss

Comments
7 min read
Microsoft's Agent Governance Toolkit: 9 Packages, MCP-Blind

Microsoft's Agent Governance Toolkit: 9 Packages, MCP-Blind

Comments
5 min read
Disposable Email vs Real Email vs Aliases: Which Should You Use?

Disposable Email vs Real Email vs Aliases: Which Should You Use?

Comments
5 min read
Discovering PII Inside InterSystems IRIS

Discovering PII Inside InterSystems IRIS

Comments
12 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.