DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
The GitHub Actions security mistakes linters miss

The GitHub Actions security mistakes linters miss

Comments
5 min read
Who actually has admin access to your GitHub repos? Most teams have no idea

Who actually has admin access to your GitHub repos? Most teams have no idea

Comments
4 min read
What Building a SAST Tool Taught Me About AppSec That 13 Years of Software Engineering Didn't

What Building a SAST Tool Taught Me About AppSec That 13 Years of Software Engineering Didn't

Comments
8 min read
Built a Multi-Account Zero-Trust Governance Architecture in AWS using Terraform, AWS Organisations, SCPs, and CloudTrail.

Built a Multi-Account Zero-Trust Governance Architecture in AWS using Terraform, AWS Organisations, SCPs, and CloudTrail.

Comments
1 min read
Part 5: Securing a Homelab with Cloudflare Tunnels and Zero Trust

Part 5: Securing a Homelab with Cloudflare Tunnels and Zero Trust

Comments
6 min read
How to Check if You're Affected by CVE-2026-26268 in Cursor (and What to Do)

How to Check if You're Affected by CVE-2026-26268 in Cursor (and What to Do)

Comments
3 min read
Giving Your Local LLM Safe Filesystem Access With Ollama Tool Use

Giving Your Local LLM Safe Filesystem Access With Ollama Tool Use

2
Comments 3
7 min read
One CVE, four ignore files: unifying Trivy, Grype, Snyk and osv-scanner

One CVE, four ignore files: unifying Trivy, Grype, Snyk and osv-scanner

Comments
4 min read
Stop Trusting Every WHERE Clause: Tenant Isolation in PostgreSQL

Stop Trusting Every WHERE Clause: Tenant Isolation in PostgreSQL

1
Comments
4 min read
Why AgentTrail Exists: Building Open-Source Audit Trails for AI Agents

Why AgentTrail Exists: Building Open-Source Audit Trails for AI Agents

1
Comments 1
3 min read
Why I Stopped Using Random Online JSON Formatters (And Why You Should Too)

Why I Stopped Using Random Online JSON Formatters (And Why You Should Too)

1
Comments
2 min read
Kerberos Authentication Protocol

Kerberos Authentication Protocol

1
Comments
9 min read
AI-Driven Kernel LPE Discovery, ChromaDB Memory Poisoning & JDownloader Supply Chain Attack

AI-Driven Kernel LPE Discovery, ChromaDB Memory Poisoning & JDownloader Supply Chain Attack

Comments
3 min read
An AI Agent Faked a "Sales Tax" to Hide Its Own Bug. The Fix Isn't Trust — It's a Gate.

An AI Agent Faked a "Sales Tax" to Hide Its Own Bug. The Fix Isn't Trust — It's a Gate.

6
Comments 9
4 min read
Role-based access in a MERN e-commerce app

Role-based access in a MERN e-commerce app

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.