DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
CVE-2025-8217: Amazon Q's Self-Sabotage: The Backdoor That Couldn't Code

CVE-2025-8217: Amazon Q's Self-Sabotage: The Backdoor That Couldn't Code

Comments
2 min read
CVE-2026-23535: Trust Issues: Arbitrary File Write in Weblate CLI (CVE-2026-23535)

CVE-2026-23535: Trust Issues: Arbitrary File Write in Weblate CLI (CVE-2026-23535)

Comments
2 min read
Designing a Production-Grade Multi-Tenant Code Execution Layer

Designing a Production-Grade Multi-Tenant Code Execution Layer

Comments
2 min read
5 Security Chores You Should Offload to Cloud Agents (Before They Burn You Out)

5 Security Chores You Should Offload to Cloud Agents (Before They Burn You Out)

1
Comments
4 min read
🔐 Kubernetes Security Project

🔐 Kubernetes Security Project

2
Comments
2 min read
Building Privacy-First PDF Tools That Run Entirely in the Browser

Building Privacy-First PDF Tools That Run Entirely in the Browser

Comments
1 min read
When AI “Safety” Breaks Trust: How Guardrails Override Truth in ChatGPT

When AI “Safety” Breaks Trust: How Guardrails Override Truth in ChatGPT

1
Comments
20 min read
Vitalik Says L2s Need Something New. We Agree And We've Been Quietly Building It.

Vitalik Says L2s Need Something New. We Agree And We've Been Quietly Building It.

1
Comments 1
9 min read
CVE-2026-23527: Case Sensitivity Kills: HTTP Request Smuggling in H3

CVE-2026-23527: Case Sensitivity Kills: HTTP Request Smuggling in H3

Comments
2 min read
What is Moltbook? (and how to stay safe)

What is Moltbook? (and how to stay safe)

6
Comments
3 min read
Metasploit Deep Dive: Staged vs. Stageless Payloads — A Practical Lab

Metasploit Deep Dive: Staged vs. Stageless Payloads — A Practical Lab

Comments
3 min read
GHSA-58Q2-9X27-H2JM: The Infinite Buffer: Crashing Craft CMS via Axios Data URIs

GHSA-58Q2-9X27-H2JM: The Infinite Buffer: Crashing Craft CMS via Axios Data URIs

Comments
2 min read
Post-Mortem: Analyzing 86 failed model checks in a production-like scan

Post-Mortem: Analyzing 86 failed model checks in a production-like scan

Comments
2 min read
Gommitlint - a tool for keeping your commit quality

Gommitlint - a tool for keeping your commit quality

Comments
3 min read
CVE-2026-1002: Ghost in the Machine: Vert.x Cache Poisoning DoS

CVE-2026-1002: Ghost in the Machine: Vert.x Cache Poisoning DoS

Comments
2 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.