DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
"10 hours" and "around two weeks" are not the same kind of number

"10 hours" and "around two weeks" are not the same kind of number

1
Comments 1
3 min read
Introducing Ayeixa MCP Guardian: Capability Fencing & Parameter Sanitization for MCP

Introducing Ayeixa MCP Guardian: Capability Fencing & Parameter Sanitization for MCP

Comments 1
2 min read
Two security rules I wrote and deleted, and why the second one was worse

Two security rules I wrote and deleted, and why the second one was worse

Comments
3 min read
Three payment providers, three different ideas of what a verified webhook is

Three payment providers, three different ideas of what a verified webhook is

Comments
4 min read
Your Laravel MCP Server Is a Public API for Robots. Here's How to Lock It Down.

Your Laravel MCP Server Is a Public API for Robots. Here's How to Lock It Down.

1
Comments
10 min read
Run AI-Proposed Shell Commands in a systemd Probe Before You Run Them for Real

Run AI-Proposed Shell Commands in a systemd Probe Before You Run Them for Real

Comments
4 min read
Splyntra: Open-Source Observability and Security for AI Agents

Splyntra: Open-Source Observability and Security for AI Agents

2
Comments 1
6 min read
Security Headers: cosa sono e come configurarli

Security Headers: cosa sono e come configurarli

Comments
4 min read
What tool poisoning actually looks like in an MCP manifest

What tool poisoning actually looks like in an MCP manifest

Comments
3 min read
Android APK Distribution: What Developers Should Consider Outside Google Play

Android APK Distribution: What Developers Should Consider Outside Google Play

Comments
3 min read
MCP security scanners are wrong about four findings in five, and the cause is structural

MCP security scanners are wrong about four findings in five, and the cause is structural

Comments
3 min read
My Security App Used to "Encrypt" Passwords With XOR. Here's the Post-Mortem I Wish More Devs Wrote.

My Security App Used to "Encrypt" Passwords With XOR. Here's the Post-Mortem I Wish More Devs Wrote.

9
Comments 1
3 min read
The most important test in a security scanner is the one where nothing happens

The most important test in a security scanner is the one where nothing happens

Comments 1
3 min read
Testing That Secrets Cannot Reach Logs in Go

Testing That Secrets Cannot Reach Logs in Go

Comments
4 min read
Azure Data Theft Campaign: F500 Breach Anatomy & Operator TTPs

Azure Data Theft Campaign: F500 Breach Anatomy & Operator TTPs

Comments
6 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.