DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
The Risks of Sharing Internal Source Code via External Tools

The Risks of Sharing Internal Source Code via External Tools

Comments
4 min read
What Is Browser Fingerprinting? How Websites Track You Without Cookies (2026)

What Is Browser Fingerprinting? How Websites Track You Without Cookies (2026)

Comments
4 min read
Stop Leaking API Keys: Managing Secrets in Kamal 2

Stop Leaking API Keys: Managing Secrets in Kamal 2

Comments
3 min read
OWASP Agentic Top 10 — What Every AI Developer Should Know in 2026

OWASP Agentic Top 10 — What Every AI Developer Should Know in 2026

Comments
8 min read
Sandboxing Explained: How Mini-App Containers Keep Your App Secure

Sandboxing Explained: How Mini-App Containers Keep Your App Secure

1
Comments
4 min read
Is Your Claude Code Safe From Base64? Inside 2026 AI Agent Attacks

Is Your Claude Code Safe From Base64? Inside 2026 AI Agent Attacks

7
Comments 1
31 min read
Why Strict "Zero Trust" Breaks Secret Management (And How We Built a Zero-Persistence Vault Instead)

Why Strict "Zero Trust" Breaks Secret Management (And How We Built a Zero-Persistence Vault Instead)

4
Comments
3 min read
78% of Production AI Systems Score F on Prompt Defense — Data from 1,646 Leaked System Prompts

78% of Production AI Systems Score F on Prompt Defense — Data from 1,646 Leaked System Prompts

Comments
7 min read
Essential SSL Certificate Validity Facts to Protect Sites

Essential SSL Certificate Validity Facts to Protect Sites

Comments
7 min read
Checkov's OIDC Bug: Why CKV_AWS_358 Misses 80% of Misconfigurations

Checkov's OIDC Bug: Why CKV_AWS_358 Misses 80% of Misconfigurations

Comments
3 min read
npm Publish Without Tokens

npm Publish Without Tokens

Comments
3 min read
Passwordless Login Needs Less Than Passkeys

Passwordless Login Needs Less Than Passkeys

Comments
6 min read
The Compliance Trap: Why 90% of Security Scans are Technically Correct but Strategically Worthless

The Compliance Trap: Why 90% of Security Scans are Technically Correct but Strategically Worthless

Comments
7 min read
Why I built attack-chain correlation on top of Semgrep and Joern

Why I built attack-chain correlation on top of Semgrep and Joern

Comments
3 min read
Delete the Vercel Claude Code Plugin. Here's Why I Did.

Delete the Vercel Claude Code Plugin. Here's Why I Did.

Comments
5 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.