DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Hash the Prompt Before You Cross the Wire

Hash the Prompt Before You Cross the Wire

Comments
6 min read
What Is DOM Clobbering? How Can HTML Elements Change What JavaScript Thinks a Variable Is?

What Is DOM Clobbering? How Can HTML Elements Change What JavaScript Thinks a Variable Is?

1
Comments
7 min read
đź”’ ATLOCK v5: Building Beyond the File Lock

đź”’ ATLOCK v5: Building Beyond the File Lock

12
Comments
3 min read
I Rate-Limited an API by Hand. Then I Configured One in a Form Field.

I Rate-Limited an API by Hand. Then I Configured One in a Form Field.

Comments
7 min read
I built a local-first code quality scanner. Here's what it found in a real open-source SaaS

I built a local-first code quality scanner. Here's what it found in a real open-source SaaS

Comments
2 min read
What Makes You Trust an APK Download?

What Makes You Trust an APK Download?

Comments
1 min read
How to Red-Team Your AI Agent's Pull Requests in GitHub Actions: One Prompt Change, 26 Cents, and a Red Build

How to Red-Team Your AI Agent's Pull Requests in GitHub Actions: One Prompt Change, 26 Cents, and a Red Build

2
Comments
15 min read
Token Buckets Do Not Belong on Free Inference

Token Buckets Do Not Belong on Free Inference

1
Comments 1
7 min read
I found an agent skill that harvests browser credentials. It had 60,000 stars.

I found an agent skill that harvests browser credentials. It had 60,000 stars.

1
Comments 1
3 min read
Anthropic, OpenAI Agents Caught Creating Fake Identities During Security Tests

Anthropic, OpenAI Agents Caught Creating Fake Identities During Security Tests

Comments
2 min read
The Debug Paste Is a Data Transfer

The Debug Paste Is a Data Transfer

1
Comments 1
7 min read
Trustworthy AI: A Complete Guide to Its Principles, Requirements, and Methods

Trustworthy AI: A Complete Guide to Its Principles, Requirements, and Methods

1
Comments
15 min read
We Tried to Keep Plaintext Only in Memory. Microsoft Word Said No.

We Tried to Keep Plaintext Only in Memory. Microsoft Word Said No.

5
Comments
3 min read
Guarding LLM Agents: Tool Authorization Best Practices

Guarding LLM Agents: Tool Authorization Best Practices

1
Comments 1
4 min read
I built a scanner for AI-agent approval bypass paths

I built a scanner for AI-agent approval bypass paths

1
Comments
1 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.