DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
What I found scanning 3 AI agent codebases for unguarded tool calls

What I found scanning 3 AI agent codebases for unguarded tool calls

2
Comments 1
7 min read
Files pass validation… then break in production

Files pass validation… then break in production

Comments
1 min read
How 1,000 Wei Can Drain Protocol Fees: A Deep Dive into CoW Protocol Rounding Errors

How 1,000 Wei Can Drain Protocol Fees: A Deep Dive into CoW Protocol Rounding Errors

Comments
2 min read
AI Agents Authentication: How Autonomous Systems Prove Identity

AI Agents Authentication: How Autonomous Systems Prove Identity

1
Comments
17 min read
I Tried to Turn Agent Memory Authority Into a Scoring Formula. The Held-Out Test Changed the Claim.

I Tried to Turn Agent Memory Authority Into a Scoring Formula. The Held-Out Test Changed the Claim.

1
Comments 1
11 min read
Copy Fail is 732 bytes. Your foothold problem is the bigger one.

Copy Fail is 732 bytes. Your foothold problem is the bigger one.

Comments
2 min read
Google Patched an Actively Exploited Android Flaw. Enterprises Should Treat This as an AI Security Problem Too

Google Patched an Actively Exploited Android Flaw. Enterprises Should Treat This as an AI Security Problem Too

2
Comments
8 min read
The-E.L.L.A.-Directive

The-E.L.L.A.-Directive

1
Comments
1 min read
Secure Your Secrets the Ancient Way: Ostrakon - A Zero-Knowledge, Git-Backed CLI Secret Manager

Secure Your Secrets the Ancient Way: Ostrakon - A Zero-Knowledge, Git-Backed CLI Secret Manager

2
Comments
3 min read
Building a zero-trust network for AI agents: mutual authentication, private-by-default routing, and why it matters

Building a zero-trust network for AI agents: mutual authentication, private-by-default routing, and why it matters

2
Comments
5 min read
Your MCP dependency scan can pass and still miss HIGH vulnerabilities

Your MCP dependency scan can pass and still miss HIGH vulnerabilities

1
Comments 2
3 min read
Stop Shipping Blob Tokens: OIDC Is the Cleaner Deploy Secret

Stop Shipping Blob Tokens: OIDC Is the Cleaner Deploy Secret

8
Comments 5
3 min read
45% of Hostile Bot Traffic Passes Your WAF. Here's Why. What behavioral detection reveals when you cross-reference hostile actors against AbuseIPDB

45% of Hostile Bot Traffic Passes Your WAF. Here's Why. What behavioral detection reveals when you cross-reference hostile actors against AbuseIPDB

Comments
4 min read
Why I built my cloud platform on micro-VMs instead of containers (a security story)

Why I built my cloud platform on micro-VMs instead of containers (a security story)

5
Comments
2 min read
Sonnet hallucinated. My agent stored it as fact.

Sonnet hallucinated. My agent stored it as fact.

3
Comments 45
3 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.