DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Stop Exposing SSH to the Internet: A Better Way to Access Private Servers

Stop Exposing SSH to the Internet: A Better Way to Access Private Servers

Comments
3 min read
Your Secrets Need a VDP, Not Just a Bug Bounty

Your Secrets Need a VDP, Not Just a Bug Bounty

Comments
9 min read
OWASP Top 10: The Web's Most Critical Security Risks

OWASP Top 10: The Web's Most Critical Security Risks

Comments
17 min read
Giving Claude access to your Telegram: the two setups, and why the difference matters

Giving Claude access to your Telegram: the two setups, and why the difference matters

Comments 1
4 min read
It refused to run a dangerous option. I wrote it one character shorter, and it ran

It refused to run a dangerous option. I wrote it one character shorter, and it ran

Comments 1
9 min read
Every Supabase key, what it does, and which ones can be public

Every Supabase key, what it does, and which ones can be public

1
Comments 1
8 min read
JWT Authentication: A Backend Engineer's Mental Model

JWT Authentication: A Backend Engineer's Mental Model

1
Comments
5 min read
CVE-2026-8457: WooCommerce Social Login Auth Bypass — Forged Apple JWTs Take Over Accounts

CVE-2026-8457: WooCommerce Social Login Auth Bypass — Forged Apple JWTs Take Over Accounts

1
Comments 3
4 min read
Cómo solucionar el error “Enable JavaScript and cookies to continue”

Cómo solucionar el error “Enable JavaScript and cookies to continue”

Comments
3 min read
We crossed 6,000 downloads. Here's what we shipped to get there.

We crossed 6,000 downloads. Here's what we shipped to get there.

Comments
3 min read
dm-verity: How a Read-Only Rootfs Stays Verified

dm-verity: How a Read-Only Rootfs Stays Verified

Comments
9 min read
Common Mode Failure: The Blast Radius Nobody Measures

Common Mode Failure: The Blast Radius Nobody Measures

1
Comments
9 min read
Identity Is the Easy Half

Identity Is the Easy Half

Comments
5 min read
A Threat Actor Used DeepSeek to Orchestrate 460 Attacks via Telegram

A Threat Actor Used DeepSeek to Orchestrate 460 Attacks via Telegram

Comments
2 min read
TryHackMe Complimentary Write-Up: Exploiting an Over-Permissive AWS Guest Role

TryHackMe Complimentary Write-Up: Exploiting an Over-Permissive AWS Guest Role

Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.