DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
We kept thinking SentinelGate was ready. It wasn't.

We kept thinking SentinelGate was ready. It wasn't.

Comments
6 min read
CVE-2026-25896: Regex Injection in fast-xml-parser: Shadowing the <

CVE-2026-25896: Regex Injection in fast-xml-parser: Shadowing the <

Comments
2 min read
We built a free CRA compliance scorer into a silicon advisor. Here's what we learned.

We built a free CRA compliance scorer into a silicon advisor. Here's what we learned.

1
Comments
3 min read
Default-Deny Policies: Why Your AI Agent Can't Touch What You Don't Allow

Default-Deny Policies: Why Your AI Agent Can't Touch What You Don't Allow

Comments
5 min read
RASP vs WAF: The Key Differences and Why You Need a Third Approach

RASP vs WAF: The Key Differences and Why You Need a Third Approach

Comments
9 min read
Building a Cost-Effective Windows Code Signing Pipeline with Sectigo, Google Cloud KMS, and GitHub Actions

Building a Cost-Effective Windows Code Signing Pipeline with Sectigo, Google Cloud KMS, and GitHub Actions

Comments
9 min read
Vercel’s "Agentic" Shift: Is Your Proprietary Code Now Training AI?

Vercel’s "Agentic" Shift: Is Your Proprietary Code Now Training AI?

8
Comments 1
2 min read
Your LangChain Agent Has No Security. Neither Does CrewAI, OpenAI, or 6 Others.

Your LangChain Agent Has No Security. Neither Does CrewAI, OpenAI, or 6 Others.

2
Comments
4 min read
I Built 7 MCP Servers for Security Tools. The Protocol Was the Easy Part.

I Built 7 MCP Servers for Security Tools. The Protocol Was the Easy Part.

5
Comments 3
3 min read
We Built a Python SDK Where the Credentials Never Enter Your Code

We Built a Python SDK Where the Credentials Never Enter Your Code

6
Comments
3 min read
I Spent 3 Months Solving a Security Gap Nobody Talks About: LLM Artifact Integrity

I Spent 3 Months Solving a Security Gap Nobody Talks About: LLM Artifact Integrity

Comments
5 min read
The API Key Cursor Just Wrote Into Your Code Is Already in Git History

The API Key Cursor Just Wrote Into Your Code Is Already in Git History

Comments 1
3 min read
135K AI Agents Exposed: I Built an Open-Source Host Guardian to Fix It

135K AI Agents Exposed: I Built an Open-Source Host Guardian to Fix It

Comments
3 min read
AI-Generated Code Risks: Addressing Security Threats from Vulnerable Self-Hosted Projects

AI-Generated Code Risks: Addressing Security Threats from Vulnerable Self-Hosted Projects

1
Comments
8 min read
The Day Facebook Went Offline: A Case Study in Centralization

The Day Facebook Went Offline: A Case Study in Centralization

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.