DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
GHES Key Rotation, Bug Bounty Program Refocus, AI Agent Permission Fatigue

GHES Key Rotation, Bug Bounty Program Refocus, AI Agent Permission Fatigue

Comments
3 min read
AgentGraph Update

AgentGraph Update

1
Comments
1 min read
Want AI Agents That Don't Spill Secrets? Don't Give Them Secrets

Separating the decision from the action

Want AI Agents That Don't Spill Secrets? Don't Give Them Secrets

7
Comments 5
8 min read
My First Cybersecurity Writeup – VAPT Experience

My First Cybersecurity Writeup – VAPT Experience

Comments
2 min read
Scankii: The First Static Security Scanner Built to Stop AI Agents from Leaking API Keys

Scankii: The First Static Security Scanner Built to Stop AI Agents from Leaking API Keys

Comments 2
2 min read
When Your Attacker Uses the Same AI as Your Defender

Universal lift in baseline capability

When Your Attacker Uses the Same AI as Your Defender

3
Comments 9
6 min read
The four-minute gap: what the Nando's machete incident reveals about incident response systems (not just training)

The four-minute gap: what the Nando's machete incident reveals about incident response systems (not just training)

Comments
4 min read
Attackers are hijacking exposed AI endpoints to run offensive operations. No exploit needed.

Attackers are hijacking exposed AI endpoints to run offensive operations. No exploit needed.

16
Comments 4
4 min read
Seeking Advice: Using AI to build tools for the (suffering) nonprofit community

Seeking Advice: Using AI to build tools for the (suffering) nonprofit community

Comments
2 min read
Distraction fraud as a systems problem: how organised retail crime syndicates exploit documentation gaps — and what operators can build to close them

Distraction fraud as a systems problem: how organised retail crime syndicates exploit documentation gaps — and what operators can build to close them

1
Comments
4 min read
How "Vibe Coding" Accidentally Turned My EC2 Instance Into a Cryptominer

How "Vibe Coding" Accidentally Turned My EC2 Instance Into a Cryptominer

4
Comments 2
3 min read
Getting Started with ThunderID: A Beginner's Guide to Modern Identity Management ⚡

Getting Started with ThunderID: A Beginner's Guide to Modern Identity Management ⚡

3
Comments 1
5 min read
The problem with security scanners isn't the scanning

The problem with security scanners isn't the scanning

Comments
7 min read
Deception technology the future of blue teaming

Deception technology the future of blue teaming

1
Comments 2
3 min read
SQL Injection Protection in Flask: A Practical Guide. Part 5 of e2ee chat series

SQL Injection Protection in Flask: A Practical Guide. Part 5 of e2ee chat series

Comments
1 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.