DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Smart Contract Security Engineering: How Real Protocols Break and How Developers Can Build Attack-Resistant Systems

Smart Contract Security Engineering: How Real Protocols Break and How Developers Can Build Attack-Resistant Systems

2
Comments
7 min read
GitLab Behind Cloudflare Tunnel --- Removing Inbound SSH Exposure

GitLab Behind Cloudflare Tunnel --- Removing Inbound SSH Exposure

2
Comments
4 min read
Why You Need an MCP Gateway for Enterprise AI Agents

Why You Need an MCP Gateway for Enterprise AI Agents

Comments 1
4 min read
How we stopped giving our AI agents raw API keys

How we stopped giving our AI agents raw API keys

1
Comments 4
4 min read
Design-Time Safety: How Fascia's Risk Engine Blocks Unsafe Patterns Before Deployment

Design-Time Safety: How Fascia's Risk Engine Blocks Unsafe Patterns Before Deployment

Comments
2 min read
What's missing from the --dangerously-skip-permissions safety playbook

What's missing from the --dangerously-skip-permissions safety playbook

Comments
6 min read
CVE-2025-54136 MCPoison: Why Hosted MCP Servers Have a Smaller Attack Surface

CVE-2025-54136 MCPoison: Why Hosted MCP Servers Have a Smaller Attack Surface

1
Comments 1
4 min read
Open Source Journey: Contributing to OWASP BLT

Open Source Journey: Contributing to OWASP BLT

13
Comments 2
3 min read
Most Webhook Signatures Are Broken

Most Webhook Signatures Are Broken

1
Comments
3 min read
Local File Inclusion - Forever CTF (web)

Local File Inclusion - Forever CTF (web)

1
Comments
1 min read
Your MCP Servers Are Safe. Your Config Isn't.

Your MCP Servers Are Safe. Your Config Isn't.

1
Comments 1
7 min read
You Built a Network of Snitches

You Built a Network of Snitches

Comments
11 min read
Convenience is eating security: why “one-click agents” need a stop button

Convenience is eating security: why “one-click agents” need a stop button

Comments
2 min read
myanon — how I anonymize 200GB of MySQL nightly for GDPR-safe dev

myanon — how I anonymize 200GB of MySQL nightly for GDPR-safe dev

Comments
1 min read
WebAuthn credProtect + security keys: why Chrome works and Safari “does nothing”

WebAuthn credProtect + security keys: why Chrome works and Safari “does nothing”

Comments
2 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.