DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
SvelteKit environment variables: the destructuring build error, and why static private bakes in secrets

SvelteKit environment variables: the destructuring build error, and why static private bakes in secrets

Comments
5 min read
One vendor was deciding our residential proxy verdicts, and I couldn't grade it against itself

One vendor was deciding our residential proxy verdicts, and I couldn't grade it against itself

Comments
4 min read
How I keep shared sales knowledge safe for different roles — SalesWiki, Part 2 of 5

How I keep shared sales knowledge safe for different roles — SalesWiki, Part 2 of 5

Comments
6 min read
What Is ASLR? How Does Randomizing Memory Addresses Stop Exploitation?

What Is ASLR? How Does Randomizing Memory Addresses Stop Exploitation?

1
Comments 2
9 min read
Oracle Manipulation Risk Report: Maple

Oracle Manipulation Risk Report: Maple

Comments
7 min read
7 Best Code Review Tools for 2026

7 Best Code Review Tools for 2026

Comments 2
13 min read
A Supply-Chain Attack Hit Our Repos. Here's How We Locked Down GitHub So It Can't Happen Again

A Supply-Chain Attack Hit Our Repos. Here's How We Locked Down GitHub So It Can't Happen Again

Comments
3 min read
Cảnh báo lỗ hổng bảo mật nghiêm trọng trên WordPress

Cảnh báo lỗ hổng bảo mật nghiêm trọng trên WordPress

Comments
6 min read
Your AI Coding Agent Silently Ignored Your Config File. Run This 15-Minute Audit

Your AI Coding Agent Silently Ignored Your Config File. Run This 15-Minute Audit

1
Comments
6 min read
Security Audit Report: Reentrancy & Access Control Review: Hyperliquid Bridge

Security Audit Report: Reentrancy & Access Control Review: Hyperliquid Bridge

Comments
6 min read
03. Client keys without a database

03. Client keys without a database

Comments
1 min read
Sizing Linux Kernel Exposure for CVE-2026-53266: Why Asset Inventory Beats a CVE Search

Sizing Linux Kernel Exposure for CVE-2026-53266: Why Asset Inventory Beats a CVE Search

1
Comments 1
3 min read
Build an Explainable Vendor-Risk Gate in Node.js

Build an Explainable Vendor-Risk Gate in Node.js

Comments
4 min read
A security policy is part of the product boundary

A security policy is part of the product boundary

2
Comments 1
1 min read
When an Upload Form Becomes a Foothold: Broad S3 Write Scope

When an Upload Form Becomes a Foothold: Broad S3 Write Scope

Comments 2
7 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.