DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
CVE-2026-28426: Chain Reaction: Stored XSS and Antlers Template Injection in Statamic Control Panel

CVE-2026-28426: Chain Reaction: Stored XSS and Antlers Template Injection in Statamic Control Panel

Comments
2 min read
Proving an MCP Tool Call Happened: A Complete Walkthrough

Proving an MCP Tool Call Happened: A Complete Walkthrough

1
Comments
5 min read
Day 15 — I Built PassAudit : A Real-Time Password Security Analyzer (and it revealed how predictable we are)

Day 15 — I Built PassAudit : A Real-Time Password Security Analyzer (and it revealed how predictable we are)

Comments
6 min read
Security news weekly round-up - 3rd April 2026

Security news weekly round-up - 3rd April 2026

1
Comments
5 min read
SentinelLM - A Proxy Middleware for Safer, Observable LLM Systems

SentinelLM - A Proxy Middleware for Safer, Observable LLM Systems

Comments
2 min read
Show HN: ZKAuth – Zero-Knowledge identity on Android using Rust + Plonky2 (39ms proofs)

Show HN: ZKAuth – Zero-Knowledge identity on Android using Rust + Plonky2 (39ms proofs)

Comments 2
1 min read
Building a Privacy-First Price Alert System: Zero Cookies, Full Trust

Building a Privacy-First Price Alert System: Zero Cookies, Full Trust

Comments
9 min read
Tool-Level Permission Scoping in MCP: Why Server Authentication Isn't Enough

Tool-Level Permission Scoping in MCP: Why Server Authentication Isn't Enough

Comments 2
5 min read
Why AI-Generated Code is a Security Minefield (And What To Do About It)

Why AI-Generated Code is a Security Minefield (And What To Do About It)

Comments
4 min read
[x509Lab]Stop Googling openssl commands: Auto-generate CLI codes

[x509Lab]Stop Googling openssl commands: Auto-generate CLI codes

Comments
2 min read
How I Stopped Blindly Trusting Claude Code Skills (And Built a 9-Layer Security Scanner)

How I Stopped Blindly Trusting Claude Code Skills (And Built a 9-Layer Security Scanner)

1
Comments
2 min read
Built a proxy so frontend devs can make secure API calls without a backend

Built a proxy so frontend devs can make secure API calls without a backend

Comments
1 min read
We security-audited 400,000+ lines of our own EDR code. Here's what we found.

We security-audited 400,000+ lines of our own EDR code. Here's what we found.

Comments
3 min read
Agentic Secrets Infrastructure: The Missing Layer in Every AI Agent Stack

Agentic Secrets Infrastructure: The Missing Layer in Every AI Agent Stack

5
Comments
8 min read
Actually Fixing AWS S3

Actually Fixing AWS S3

12
Comments
45 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.