DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
How to Prevent Unauthorized Domain Transfers (Before It's Too Late)

How to Prevent Unauthorized Domain Transfers (Before It's Too Late)

1
Comments
5 min read
The browser-agent control plane: scope, audit, handoff, rollback

The browser-agent control plane: scope, audit, handoff, rollback

Comments
5 min read
El GRU ruso secuestra routers TP-Link domésticos en una operación global: NSA y 16 países urgen reiniciar el tuyo

El GRU ruso secuestra routers TP-Link domésticos en una operación global: NSA y 16 países urgen reiniciar el tuyo

Comments
8 min read
Smart Home Devices Are Collecting More Than You Think — Here's What to Do

Smart Home Devices Are Collecting More Than You Think — Here's What to Do

Comments 1
3 min read
AI SOC Evasion, Tamper-Evident AI Audits, & Bell HomeHub 3000 DoS

AI SOC Evasion, Tamper-Evident AI Audits, & Bell HomeHub 3000 DoS

Comments
3 min read
Prompt Injection in AI Coding Agents: 3 Attack Vectors, 4 Defenses

Prompt Injection in AI Coding Agents: 3 Attack Vectors, 4 Defenses

Comments
12 min read
AI Ops Agents Are a New Class of Attack Surface

AI Ops Agents Are a New Class of Attack Surface

Comments
7 min read
Trained, Not Prompted: Why Fine-Tuned Models Beat LLM Wrappers for Offensive Security

Trained, Not Prompted: Why Fine-Tuned Models Beat LLM Wrappers for Offensive Security

Comments
2 min read
Securely Deploying OpenClaw on a VPS With Enterprise Grade Access Control

Securely Deploying OpenClaw on a VPS With Enterprise Grade Access Control

5
Comments
11 min read
We Reviewed 10 PDF Tools — Here's What Happens to Your Files

We Reviewed 10 PDF Tools — Here's What Happens to Your Files

Comments
1 min read
GHSA-C4QG-J8JG-42Q5: GHSA-C4QG-J8JG-42Q5: Server-Side Request Forgery in OpenClaw QQBot Extension

GHSA-C4QG-J8JG-42Q5: GHSA-C4QG-J8JG-42Q5: Server-Side Request Forgery in OpenClaw QQBot Extension

Comments
2 min read
How I Secured an Autonomous AI Agent on Oracle’s Free Tier (Without MicroVMs)

How I Secured an Autonomous AI Agent on Oracle’s Free Tier (Without MicroVMs)

Comments
4 min read
SecAudit: I built a passive web security auditor in Python (TLS, headers, CSP, cookies, DNS — all parallel)

SecAudit: I built a passive web security auditor in Python (TLS, headers, CSP, cookies, DNS — all parallel)

Comments
1 min read
《认知革命播客》:个人AI基础设施的深度实践与安全思辨

《认知革命播客》:个人AI基础设施的深度实践与安全思辨

Comments
2 min read
Why token revocation matters — and why JWT can't do it

Why token revocation matters — and why JWT can't do it

1
Comments 4
4 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.