DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
How to Integrate Vulnerability Scanning Into DevSecOps Workflows

How to Integrate Vulnerability Scanning Into DevSecOps Workflows

2
Comments
7 min read
Observing Behavioral Anomalies in Web Applications Beyond Signature Scanners

Observing Behavioral Anomalies in Web Applications Beyond Signature Scanners

Comments
1 min read
Trust No One: Implementing True End-to-End Encryption with Insertable Streams

Trust No One: Implementing True End-to-End Encryption with Insertable Streams

3
Comments
8 min read
The State of MCP Server Security in 2026 — 118 Findings Across 68 Packages

The State of MCP Server Security in 2026 — 118 Findings Across 68 Packages

Comments 2
3 min read
RAGGuard: Filter During Vector Search, Not After Retrieval

RAGGuard: Filter During Vector Search, Not After Retrieval

Comments
1 min read
Unknown File in WordPress Core? How Fake GIF Backdoors Hide in WordPress

Unknown File in WordPress Core? How Fake GIF Backdoors Hide in WordPress

Comments
6 min read
How a Small OSINT Team Turned the Epstein Files Dump Into Actionable Intelligence

How a Small OSINT Team Turned the Epstein Files Dump Into Actionable Intelligence

3
Comments
5 min read
Making Amazon Bedrock AgentCore Gateway Accessible (Only Through CloudFront)

Making Amazon Bedrock AgentCore Gateway Accessible (Only Through CloudFront)

2
Comments
4 min read
OWASP Cornucopia is publishing it’s darkest secrets!

OWASP Cornucopia is publishing it’s darkest secrets!

5
Comments 1
5 min read
Stop Using JSON Keys: Secure Your GitHub Actions with Workload Identity Federation

Stop Using JSON Keys: Secure Your GitHub Actions with Workload Identity Federation

Comments
4 min read
Why Configuration Management Will Make or Break Your Protocol

Why Configuration Management Will Make or Break Your Protocol

3
Comments
5 min read
Cloud Computing

Cloud Computing

Comments
9 min read
What If Your CI Pipeline Could catch regulatory compliance violations of your code?

What If Your CI Pipeline Could catch regulatory compliance violations of your code?

11
Comments
9 min read
How to Detect Prompt Injection Attacks in Your AI Agent (3 Layers, 5 Minutes)

How to Detect Prompt Injection Attacks in Your AI Agent (3 Layers, 5 Minutes)

1
Comments 2
5 min read
Why I stopped decoding JWTs online

Why I stopped decoding JWTs online

1
Comments 1
1 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.