DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
AI Agents Security for Developers: Don't Let Your Agents Become a Liability

AI Agents Security for Developers: Don't Let Your Agents Become a Liability

1
Comments
9 min read
Letting an AI agent run shell commands is RCE on your machine. I fixed it with the kernel, not Docker.

Letting an AI agent run shell commands is RCE on your machine. I fixed it with the kernel, not Docker.

1
Comments
4 min read
How to Password Protect Your Entire WordPress Site (5 Methods, 2026)

How to Password Protect Your Entire WordPress Site (5 Methods, 2026)

Comments
12 min read
FrontGate: a Lightweight Package Proxy for Supply Chain Security

FrontGate: a Lightweight Package Proxy for Supply Chain Security

Comments
2 min read
When DNS TXT Records Become a Backdoor: Lessons from a Go Supply Chain Attack

When DNS TXT Records Become a Backdoor: Lessons from a Go Supply Chain Attack

Comments
7 min read
The ISO 27001 Statement of Applicability, explained for engineers

The ISO 27001 Statement of Applicability, explained for engineers

1
Comments 1
3 min read
AI watermark removal is really a media pipeline trust problem

AI watermark removal is really a media pipeline trust problem

Comments
9 min read
AI agents need tiered approval escalation, not one big confirm button

AI agents need tiered approval escalation, not one big confirm button

Comments
4 min read
ECDSA - The Math That Only Goes One Way

ECDSA - The Math That Only Goes One Way

Comments
3 min read
I Built a Free HTTP Header Analyzer — and Most Sites Score an F

I Built a Free HTTP Header Analyzer — and Most Sites Score an F

1
Comments
3 min read
The New AI Workflow Is a Supply Chain Problem

The New AI Workflow Is a Supply Chain Problem

Comments
5 min read
I Built an AI-Powered OSINT Agent That Investigates Targets Autonomously — From Your Terminal

I Built an AI-Powered OSINT Agent That Investigates Targets Autonomously — From Your Terminal

Comments
5 min read
3,800 GitHub repos got breached by one VSCode extension. Here's the 5-minute audit that saves yours.

3,800 GitHub repos got breached by one VSCode extension. Here's the 5-minute audit that saves yours.

Comments
4 min read
JWT vs Session Tokens in Spring Boot: A Senior Dev's Decision Guide

JWT vs Session Tokens in Spring Boot: A Senior Dev's Decision Guide

1
Comments 1
6 min read
Models shouldn't have execution authority. Why we built a deterministic FSM runtime for AI agents.

Models shouldn't have execution authority. Why we built a deterministic FSM runtime for AI agents.

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.