DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Building a DDoS Bouncer: Anomaly Detection with Python & Z-Score

Building a DDoS Bouncer: Anomaly Detection with Python & Z-Score

4
Comments 1
2 min read
I built an open-source dependency intelligence platform in TypeScript — here's how it works

I built an open-source dependency intelligence platform in TypeScript — here's how it works

Comments
3 min read
572K Weekly Downloads, One Preinstall Script: The SAP CAP Supply Chain Attack Your AI Agent Would Have Missed

572K Weekly Downloads, One Preinstall Script: The SAP CAP Supply Chain Attack Your AI Agent Would Have Missed

1
Comments
3 min read
GHSA-H829-5CG7-6HFF: GHSA-H829-5CG7-6HFF: Improper Tag Signature Verification in Gitverify

GHSA-H829-5CG7-6HFF: GHSA-H829-5CG7-6HFF: Improper Tag Signature Verification in Gitverify

Comments
2 min read
What Is Agent Reliability Testing?

What Is Agent Reliability Testing?

Comments
9 min read
Continuous monitoring caught a credential leak in a published MCP package. Six republishes later, it is still there.

Continuous monitoring caught a credential leak in a published MCP package. Six republishes later, it is still there.

Comments
7 min read
I Inherited a NestJS Codebase. One 12-Second ESLint Run Found 47 Violations Across 6 Vulnerability Classes.

I Inherited a NestJS Codebase. One 12-Second ESLint Run Found 47 Violations Across 6 Vulnerability Classes.

1
Comments 2
18 min read
Security news weekly round-up - 8th May 2026

Security news weekly round-up - 8th May 2026

1
Comments 1
3 min read
🛡️ Lirix v1.4.1: The Ecosystem Domination Release

🛡️ Lirix v1.4.1: The Ecosystem Domination Release

1
Comments
6 min read
ByteCode C2 is now open source. A C2 framework that actually bypasses Defender

ByteCode C2 is now open source. A C2 framework that actually bypasses Defender

Comments
1 min read
Your .env file has been in 6 places it shouldn't be

Your .env file has been in 6 places it shouldn't be

1
Comments
3 min read
Opening Your SaaS to AI Agents Over MCP: Hold the Reins on the Server Side

Opening Your SaaS to AI Agents Over MCP: Hold the Reins on the Server Side

5
Comments 2
9 min read
I Built a Secret Scanner That Checks Your Git History, Not Just Your Code

I Built a Secret Scanner That Checks Your Git History, Not Just Your Code

2
Comments
3 min read
173 Undocumented Security Findings in TerraGoat: What Standard IaC Scanners Miss (and Why Post-Quantum Matters)

173 Undocumented Security Findings in TerraGoat: What Standard IaC Scanners Miss (and Why Post-Quantum Matters)

1
Comments 3
4 min read
The Cryptographic Cliff: Post-Quantum Migration at Scale

The Cryptographic Cliff: Post-Quantum Migration at Scale

Comments
10 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.