DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Your AI Agents Have 5 Months to Comply With the EU AI Act — Here's What You're Missing

Your AI Agents Have 5 Months to Comply With the EU AI Act — Here's What You're Missing

Comments 1
4 min read
Every AI Agent Framework Trusts the Agent. That's the Problem.

Every AI Agent Framework Trusts the Agent. That's the Problem.

11
Comments 19
5 min read
CVE-2025-13465: Lodash: The Delete Button for the Universe (CVE-2025-13465)

CVE-2025-13465: Lodash: The Delete Button for the Universe (CVE-2025-13465)

Comments
2 min read
The 'Instruction Hierarchy' is Dead: Why Your Agent's Skills Are a Supply Chain Nightmare

The 'Instruction Hierarchy' is Dead: Why Your Agent's Skills Are a Supply Chain Nightmare

Comments 1
4 min read
Strengthening OAuth 2.0 with FAPI 2.0

Strengthening OAuth 2.0 with FAPI 2.0

3
Comments
4 min read
CVE-2026-24047: Backstage Pass: Breaking Out of the Sandbox with Symlinks

CVE-2026-24047: Backstage Pass: Breaking Out of the Sandbox with Symlinks

Comments
2 min read
Why Your Profanity Filter Fails Against Unicode (And How to Fix It)

Why Your Profanity Filter Fails Against Unicode (And How to Fix It)

Comments
1 min read
CVE-2026-23733: Mermaid's Song: From Flowchart to Remote Code Execution in LobeChat

CVE-2026-23733: Mermaid's Song: From Flowchart to Remote Code Execution in LobeChat

Comments
2 min read
GHSA-PCHF-49FH-W34R: Soft Serve, Hard Fail: The Context Pollution Authentication Bypass

GHSA-PCHF-49FH-W34R: Soft Serve, Hard Fail: The Context Pollution Authentication Bypass

Comments
2 min read
Why Traditional QA Fails for AI Agents (And What 10 Years in QA Didn’t Teach Me)

Why Traditional QA Fails for AI Agents (And What 10 Years in QA Didn’t Teach Me)

2
Comments 7
7 min read
How we replaced .env files across 5 microservices without touching the app code

How we replaced .env files across 5 microservices without touching the app code

Comments
3 min read
RFC 6750 Deep Dive: How Bearer Tokens Actually Work, Straight from the Spec

RFC 6750 Deep Dive: How Bearer Tokens Actually Work, Straight from the Spec

4
Comments
10 min read
Logtide 0.6.0: PII Masking, Keyboard Shortcuts & Anomaly Detection

Logtide 0.6.0: PII Masking, Keyboard Shortcuts & Anomaly Detection

10
Comments 2
4 min read
Skyward Shield: Harnessing Cloud Computing for Next-Gen Disaster Recovery

Skyward Shield: Harnessing Cloud Computing for Next-Gen Disaster Recovery

Comments
2 min read
An AI safety researcher's agent deleted her inbox. The fix isn't a better prompt.

An AI safety researcher's agent deleted her inbox. The fix isn't a better prompt.

1
Comments
6 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.