DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Stop Fake Webhooks: Master HMAC Signatures in Laravel 🛡️

Stop Fake Webhooks: Master HMAC Signatures in Laravel 🛡️

Comments
2 min read
coding agents made repositories the security boundary

coding agents made repositories the security boundary

Comments
6 min read
Dynamic Email Domain Validation in Keycloak with a Custom Authenticator

Dynamic Email Domain Validation in Keycloak with a Custom Authenticator

2
Comments
7 min read
Building a private PDF toolkit: Moving document processing entirely to the client

Building a private PDF toolkit: Moving document processing entirely to the client

1
Comments
3 min read
How do web3 Hardware wallets work?

How do web3 Hardware wallets work?

Comments 1
5 min read
If the Shai-Hulud worm reached your GitHub repos, please read this

If the Shai-Hulud worm reached your GitHub repos, please read this

Comments
6 min read
Deploying Ory Kratos Open-Source Identity and User Management System on Ubuntu 24.04

Deploying Ory Kratos Open-Source Identity and User Management System on Ubuntu 24.04

6
Comments
4 min read
The Env Variable Name Was Gone From the Bundle. The Value Wasn't.

The Env Variable Name Was Gone From the Bundle. The Value Wasn't.

Comments
5 min read
The Leopard's Head

The Leopard's Head

Comments
6 min read
How we made our trading-signal track record tamper-evident with a SHA-256 hash chain

How we made our trading-signal track record tamper-evident with a SHA-256 hash chain

1
Comments
2 min read
When Chain Analysis Fails: Three Boundaries You Cannot Cross

When Chain Analysis Fails: Three Boundaries You Cannot Cross

Comments
4 min read
Proton launches cross-platform Drive CLI for encrypted terminal file management

Proton launches cross-platform Drive CLI for encrypted terminal file management

Comments
6 min read
Opus 4.8 tops the LLM leaderboard with 95% on skill evals

Opus 4.8 tops the LLM leaderboard with 95% on skill evals

11
Comments
5 min read
The Gemini CLI CVSS 10 Attack: How a GitHub Issue Became a Supply Chain Weapon

The Gemini CLI CVSS 10 Attack: How a GitHub Issue Became a Supply Chain Weapon

Comments
6 min read
Dont decode JWT on random sites - verify if they are sending it to backend servers! How though?

Dont decode JWT on random sites - verify if they are sending it to backend servers! How though?

1
Comments
2 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.