DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
K8s Roles: The Unofficial Security Shift

K8s Roles: The Unofficial Security Shift

Comments
4 min read
The Invisible Wall: Hardening Your BI Infrastructure Against Modern Data Breaches

The Invisible Wall: Hardening Your BI Infrastructure Against Modern Data Breaches

2
Comments
1 min read
Unlocking GitHub Actions: Why the 'Workflow' Permission is a Productivity Bottleneck

Unlocking GitHub Actions: Why the 'Workflow' Permission is a Productivity Bottleneck

Comments
4 min read
From Vulnerable to Distroless: Auditing Docker Images with Trivy in CI

From Vulnerable to Distroless: Auditing Docker Images with Trivy in CI

Comments
11 min read
AWS IAM Roles Explained - A Beginner's Guide (With Real Examples)

AWS IAM Roles Explained - A Beginner's Guide (With Real Examples)

Comments
11 min read
Auditing Windows security from a Python script, no pip install needed

Auditing Windows security from a Python script, no pip install needed

Comments
3 min read
AI Agent Rate Limiting: Prevent Your Bot from Getting Rekt by Its Own Speed

AI Agent Rate Limiting: Prevent Your Bot from Getting Rekt by Its Own Speed

Comments
5 min read
Nine Seconds, No Backups: An Agent’s “Confession”

Nine Seconds, No Backups: An Agent’s “Confession”

10
Comments 1
10 min read
AWS Frontier Agents: What $50/Hour Pen Testing and $30/Hour SRE Means for Platform Teams

AWS Frontier Agents: What $50/Hour Pen Testing and $30/Hour SRE Means for Platform Teams

Comments
4 min read
The Axios Breach Started with a Plaintext Token — Here's How I Keep Zero Secrets in My Repos

The Axios Breach Started with a Plaintext Token — Here's How I Keep Zero Secrets in My Repos

Comments
5 min read
Every agent trust proposal is building the wrong thing

Every agent trust proposal is building the wrong thing

Comments
3 min read
The Claude Code Leak Changed the Threat Model. Here's How to Defend Your AI Agents.

The Claude Code Leak Changed the Threat Model. Here's How to Defend Your AI Agents.

Comments
11 min read
Why We Built a Local-First iPhone Authenticator Instead of Another Cloud-Synced 2FA App

Why We Built a Local-First iPhone Authenticator Instead of Another Cloud-Synced 2FA App

Comments
1 min read
DevSecOps in Practice: Tools That Actually Catch Vulnerabilities - Part 3 - SCA with pip-audit

DevSecOps in Practice: Tools That Actually Catch Vulnerabilities - Part 3 - SCA with pip-audit

1
Comments 1
3 min read
HTTP/3 Fingerprints: Identifying Clients in the QUIC Era

HTTP/3 Fingerprints: Identifying Clients in the QUIC Era

1
Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.