DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
From Zero to Production: Building a Secure OG Image API

From Zero to Production: Building a Secure OG Image API

Comments
5 min read
A Nation State Just Built a Fake Think Tank to Manipulate AI Chatbots — and It Changes Everything

A Nation State Just Built a Fake Think Tank to Manipulate AI Chatbots — and It Changes Everything

Comments
4 min read
MCP Servers Are Just the Latest Place We Forgot to Lock the Door

MCP Servers Are Just the Latest Place We Forgot to Lock the Door

1
Comments
3 min read
I found a duplicate-charge bug in an MCP tool via static analysis — here's the finding and the fix (NEXUM-004)

I found a duplicate-charge bug in an MCP tool via static analysis — here's the finding and the fix (NEXUM-004)

1
Comments 1
2 min read
Five governments just published joint agentic-AI security guidance

Five governments just published joint agentic-AI security guidance

3
Comments
4 min read
My home computers

My home computers

Comments
3 min read
Custom-Domain Mail Explained: Node.js DKIM/SPF for US/EU SaaS in 2026

Custom-Domain Mail Explained: Node.js DKIM/SPF for US/EU SaaS in 2026

Comments
7 min read
A Security Fix Should Show Where the Attack Stopped

A Security Fix Should Show Where the Attack Stopped

Comments
4 min read
แกะความคิดของ AI — เมื่อ Proprietary Model ไม่สามารถซ่อน Reasoning Trace ได้อีกต่อไป

แกะความคิดของ AI — เมื่อ Proprietary Model ไม่สามารถซ่อน Reasoning Trace ได้อีกต่อไป

Comments
6 min read
Prompt Injection Isn't Just a Chatbot Problem — It's Coming for Your Internal Tools Too

Prompt Injection Isn't Just a Chatbot Problem — It's Coming for Your Internal Tools Too

Comments
4 min read
A risk score is not a probability. Does your code know that?

A risk score is not a probability. Does your code know that?

1
Comments
1 min read
2026 NestJS Customer Support Backend for SMS OTP Abuse Budgets and Audit

2026 NestJS Customer Support Backend for SMS OTP Abuse Budgets and Audit

Comments
7 min read
I Ran 1,400 WHOIS Lookups. 18 Domains Were Compromised.

I Ran 1,400 WHOIS Lookups. 18 Domains Were Compromised.

1
Comments
8 min read
Architecting a Custom Purple Team Infrastructure Scanner in Go.

Architecting a Custom Purple Team Infrastructure Scanner in Go.

Comments
3 min read
Parsing numbers from JSON in Python

Parsing numbers from JSON in Python

Comments
8 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.