DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
The Agentic AI Dilemma: Scaling Autonomy Without Sacrificing Security

The Agentic AI Dilemma: Scaling Autonomy Without Sacrificing Security

Comments
3 min read
Applying SAST to Any Application (Without Sonar, Snyk, Semgrep, or Veracode)

Applying SAST to Any Application (Without Sonar, Snyk, Semgrep, or Veracode)

Comments 1
5 min read
HTTP/2 Bomb (CVE-2026-49975): the HPACK + flow-control DoS, and how to patch it

HTTP/2 Bomb (CVE-2026-49975): the HPACK + flow-control DoS, and how to patch it

4
Comments 1
5 min read
Is Linux Really Secure?

Is Linux Really Secure?

Comments
6 min read
Pentesting a private tracker: Nuxt.js, Cloudflare and 3 vulnerabilities found

Pentesting a private tracker: Nuxt.js, Cloudflare and 3 vulnerabilities found

Comments
8 min read
Auditing MCP Server Security: The Attack Surface Nobody Talks About

Auditing MCP Server Security: The Attack Surface Nobody Talks About

3
Comments
2 min read
Why We Open-Sourced Our AI Safety Layer

Why We Open-Sourced Our AI Safety Layer

Comments
4 min read
CopyFail Linux Root, cPanel Auth Bypass, & Numeric Data Exfil Techniques

CopyFail Linux Root, cPanel Auth Bypass, & Numeric Data Exfil Techniques

Comments
3 min read
CAA Records: The DNS Security Control Most Organizations Skip

CAA Records: The DNS Security Control Most Organizations Skip

Comments
8 min read
Password Entropy: The Math Behind Why 'Password123' Is Weak

Password Entropy: The Math Behind Why 'Password123' Is Weak

Comments
4 min read
OAuth2 + OpenID Connect in Spring Boot: A Practical Guide for Java Backend Engineers

OAuth2 + OpenID Connect in Spring Boot: A Practical Guide for Java Backend Engineers

1
Comments
5 min read
What's Actually Inside a JWT Token (and How to Read One)

What's Actually Inside a JWT Token (and How to Read One)

Comments
4 min read
Stop Guessing Which Debian Packages Are Vulnerable: Practical `debsecan` for Host-Level CVE Triage

Stop Guessing Which Debian Packages Are Vulnerable: Practical `debsecan` for Host-Level CVE Triage

Comments
5 min read
What Is Microsoft Presidio and Why You Need It (Setup + First Detection)

What Is Microsoft Presidio and Why You Need It (Setup + First Detection)

2
Comments
5 min read
The Attacker Lives Between Your Tools

The Attacker Lives Between Your Tools

Comments
9 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.