DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Kimsuky (APT43) — Analysis of the New PebbleDash · AppleSeed Toolset

Kimsuky (APT43) — Analysis of the New PebbleDash · AppleSeed Toolset

Comments
14 min read
Build a per-locale red-team harness for your LLM agent (before you trust the English number)

Build a per-locale red-team harness for your LLM agent (before you trust the English number)

Comments
3 min read
Why Google reCAPTCHA is breaking your site (and how to actually replace it)

Why Google reCAPTCHA is breaking your site (and how to actually replace it)

Comments
5 min read
ScarCruft Compromises a Yanbian Gaming Platform — A Wholesale Supply-Chain Takeover

ScarCruft Compromises a Yanbian Gaming Platform — A Wholesale Supply-Chain Takeover

Comments
21 min read
Your Next.js API Route Is Leaking Diagnostics in Its 400 Responses

Your Next.js API Route Is Leaking Diagnostics in Its 400 Responses

Comments 1
5 min read
The MCP Package That’s One Character Away From Yours

The MCP Package That’s One Character Away From Yours

Comments
4 min read
JWTs Explained: What's Inside That Token and How to Read It

JWTs Explained: What's Inside That Token and How to Read It

Comments
4 min read
Signing your random numbers is theater. Here's what actually makes randomness trustworthy.

Signing your random numbers is theater. Here's what actually makes randomness trustworthy.

Comments
6 min read
Self-Hosted Password Managers Compared: Vaultwarden, KeePassXC, Pass

Self-Hosted Password Managers Compared: Vaultwarden, KeePassXC, Pass

Comments
5 min read
When the guardrail becomes the target: reasoning-extension DoS against LLM safety layers

When the guardrail becomes the target: reasoning-extension DoS against LLM safety layers

Comments
2 min read
Copying fail

Copying fail

Comments
6 min read
I built a JS/TS runtime in Rust where nothing runs without your permission

I built a JS/TS runtime in Rust where nothing runs without your permission

1
Comments
4 min read
GitHub Actions Security and GitLab CI Security: Static Analysis for CI/CD

GitHub Actions Security and GitLab CI Security: Static Analysis for CI/CD

Comments
6 min read
Is "good enough" auth hiding a bigger security problem?

Is "good enough" auth hiding a bigger security problem?

2
Comments 3
2 min read
AI Agents Can Self-Replicate Across Networks. Here's What the Data Actually Shows.

AI Agents Can Self-Replicate Across Networks. Here's What the Data Actually Shows.

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.