DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
CVE-2026-24765: The CI/CD Trojan Horse: Inside PHPUnit's Unsafe Deserialization

CVE-2026-24765: The CI/CD Trojan Horse: Inside PHPUnit's Unsafe Deserialization

Comments
2 min read
CVE-2025-36070: The Glass House: Shattering IBM Db2 with a Single SELECT

CVE-2025-36070: The Glass House: Shattering IBM Db2 with a Single SELECT

Comments
2 min read
Stop Using .env Files Wrong: A Better Way to Manage Secrets in Node.js

Stop Using .env Files Wrong: A Better Way to Manage Secrets in Node.js

4
Comments 4
5 min read
đź’€ EDR Blind Spots: Kernel Callbacks

đź’€ EDR Blind Spots: Kernel Callbacks

2
Comments
6 min read
An ablation study on security outcomes: Which parts of an AI skill actually matter?

An ablation study on security outcomes: Which parts of an AI skill actually matter?

Comments
5 min read
CVE-2026-24473: The Infinite Fallback: How Hono Leaked Your Cloudflare KV Keys

CVE-2026-24473: The Infinite Fallback: How Hono Leaked Your Cloudflare KV Keys

Comments
2 min read
Stop Uploading Sensitive PDFs: How I Built a Client-Side Redactor with Next.js

Stop Uploading Sensitive PDFs: How I Built a Client-Side Redactor with Next.js

Comments
2 min read
Cloudflare Outages: Causes, Impact, and Systemic Risk to the Internet

Cloudflare Outages: Causes, Impact, and Systemic Risk to the Internet

Comments
3 min read
CVE-2025-59471: Next.js Image Optimizer: The 4GB Hello World

CVE-2025-59471: Next.js Image Optimizer: The 4GB Hello World

Comments
2 min read
Why Security is Always Late: Economics, Zero-Days, and Attacker Math

Why Security is Always Late: Economics, Zero-Days, and Attacker Math

1
Comments
4 min read
6 Ways to Get YouTube Cookies for yt-dlp in 2026 — Only 1 Works

6 Ways to Get YouTube Cookies for yt-dlp in 2026 — Only 1 Works

2
Comments 1
7 min read
LANimals: 7 Comics About the People Who Are Always the Vulnerability

LANimals: 7 Comics About the People Who Are Always the Vulnerability

3
Comments 1
1 min read
Why My Multi-Tenant Chatbot Needed Two Types of API Keys

Why My Multi-Tenant Chatbot Needed Two Types of API Keys

2
Comments
7 min read
Add an Audit Trail to Your API in Minutes in NodeJS

Add an Audit Trail to Your API in Minutes in NodeJS

5
Comments
4 min read
Your IDE is an Attack Vector

Your IDE is an Attack Vector

51
Comments 52
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.