DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
How I Secured an Autonomous AI Agent on Oracle’s Free Tier (Without MicroVMs)

How I Secured an Autonomous AI Agent on Oracle’s Free Tier (Without MicroVMs)

Comments
4 min read
GHSA-C4QG-J8JG-42Q5: GHSA-C4QG-J8JG-42Q5: Server-Side Request Forgery in OpenClaw QQBot Extension

GHSA-C4QG-J8JG-42Q5: GHSA-C4QG-J8JG-42Q5: Server-Side Request Forgery in OpenClaw QQBot Extension

Comments
2 min read
MCP Server Exploitation Is the Attack Surface Nobody Audited Yet

MCP Server Exploitation Is the Attack Surface Nobody Audited Yet

Comments
8 min read
Replit's AI Wiped a Production Database on Day 9 — Then Reported False Test Results

Replit's AI Wiped a Production Database on Day 9 — Then Reported False Test Results

Comments
6 min read
Meta's Internal AI Agent Leaked Sensitive Data. There Was No Attacker.

Meta's Internal AI Agent Leaked Sensitive Data. There Was No Attacker.

Comments
8 min read
Multi-Turn Jailbreaks Are the New Prompt Injection

Multi-Turn Jailbreaks Are the New Prompt Injection

Comments
8 min read
SecAudit: I built a passive web security auditor in Python (TLS, headers, CSP, cookies, DNS — all parallel)

SecAudit: I built a passive web security auditor in Python (TLS, headers, CSP, cookies, DNS — all parallel)

Comments
1 min read
《认知革命播客》:个人AI基础设施的深度实践与安全思辨

《认知革命播客》:个人AI基础设施的深度实践与安全思辨

Comments
2 min read
Why token revocation matters — and why JWT can't do it

Why token revocation matters — and why JWT can't do it

1
Comments 4
4 min read
Shor's Algorithm in Plain English: How Quantum Breaks RSA and Why Post Quantum Cryptography Replaces It

Shor's Algorithm in Plain English: How Quantum Breaks RSA and Why Post Quantum Cryptography Replaces It

Comments
5 min read
Cryptographic Failures: The Silent Killer in Your Codebase (OWASP #2)

Cryptographic Failures: The Silent Killer in Your Codebase (OWASP #2)

5
Comments 4
5 min read
Keras Deserialization Safe Mode: Security Capabilities and Limitations

Keras Deserialization Safe Mode: Security Capabilities and Limitations

Comments
3 min read
Plain Text Auth Config vs Managed Services: When to DIY and When to Delegate

Plain Text Auth Config vs Managed Services: When to DIY and When to Delegate

Comments
5 min read
I built a security scanner for AI agent skills — paid per scan via x402, no API keys published #ai #security #x402 #openclaw

I built a security scanner for AI agent skills — paid per scan via x402, no API keys published #ai #security #x402 #openclaw

Comments
3 min read
False Positives in Child Safety AI: Architecture Tradeoffs and Why They Matter

False Positives in Child Safety AI: Architecture Tradeoffs and Why They Matter

Comments
6 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.