DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
X402_ALLOWED_DOMAINS: Control Which APIs Your AI Agent Can Pay For

X402_ALLOWED_DOMAINS: Control Which APIs Your AI Agent Can Pay For

Comments
4 min read
Open-Source CVE Triage: Combining NVD, CISA KEV, and EPSS in One MCP Server

Open-Source CVE Triage: Combining NVD, CISA KEV, and EPSS in One MCP Server

1
Comments
5 min read
How we built an MCP Guardrail to enforce tech policy in real-time

How we built an MCP Guardrail to enforce tech policy in real-time

1
Comments 2
10 min read
Beyond the Chatbot: How Claude Code Is Turning Security Audits Into a One-Command Workflow

Beyond the Chatbot: How Claude Code Is Turning Security Audits Into a One-Command Workflow

Comments
4 min read
The AI Agent Identity Crisis Is Here. The Infrastructure to Solve It Already Exists.

The AI Agent Identity Crisis Is Here. The Infrastructure to Solve It Already Exists.

Comments 1
2 min read
What a Free Security Snapshot Can Tell You — and What It Cannot

What a Free Security Snapshot Can Tell You — and What It Cannot

Comments
4 min read
I received a phishing email on Easter. I dismantled a criminal organization. The chocolate egg is still wrapped.

I received a phishing email on Easter. I dismantled a criminal organization. The chocolate egg is still wrapped.

Comments
1 min read
I scanned 20 popular Python packages for dangerous regex patterns. Here is what I found.

I scanned 20 popular Python packages for dangerous regex patterns. Here is what I found.

Comments
4 min read
The Agent Custody Problem

The Agent Custody Problem

Comments
4 min read
Anthropic Just Released a Model So Dangerous They Gave It to Only Security Researchers

Anthropic Just Released a Model So Dangerous They Gave It to Only Security Researchers

Comments
2 min read
Anthropic Just Released a Model Too Dangerous for Public Use. They Called It Project Glasswing.

Anthropic Just Released a Model Too Dangerous for Public Use. They Called It Project Glasswing.

Comments
3 min read
Add IP Fraud Scoring to Your Auth Flow

Add IP Fraud Scoring to Your Auth Flow

1
Comments
9 min read
GitHub Account Compromise: A Wake-Up Call for Engineering Leadership on Platform Security

GitHub Account Compromise: A Wake-Up Call for Engineering Leadership on Platform Security

1
Comments
5 min read
Why Your Open-Source Dependencies Are a Ticking Time Bomb (And How to Defuse Them)

Why Your Open-Source Dependencies Are a Ticking Time Bomb (And How to Defuse Them)

Comments
5 min read
Open Directory Listings: The WordPress Security Hole You Forgot

Open Directory Listings: The WordPress Security Hole You Forgot

1
Comments
4 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.