DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Vercel's April 2026 Breach Was an OAuth Supply-Chain Attack

Vercel's April 2026 Breach Was an OAuth Supply-Chain Attack

Comments
7 min read
The #1 ESLint Security Plugin Just Got Fixed. It Still Catches 0 of 6 SQL Injections.

The #1 ESLint Security Plugin Just Got Fixed. It Still Catches 0 of 6 SQL Injections.

Comments
32 min read
Securing MCP in Production: PII Redaction, Guardrails, and Data Exfiltration Prevention

Securing MCP in Production: PII Redaction, Guardrails, and Data Exfiltration Prevention

Comments
4 min read
AWS Deep Dive

AWS Deep Dive

Comments
7 min read
SAML - Single Sgn On

SAML - Single Sgn On

Comments
2 min read
Inside SENTINEL: How 13 Microservices Detect Child Grooming by Behavior, Not Keywords

Inside SENTINEL: How 13 Microservices Detect Child Grooming by Behavior, Not Keywords

Comments
6 min read
I leaked my GH token to Claude

I leaked my GH token to Claude

Comments
2 min read
How I Built a Secure File Transfer App with Django, ClamAV, and Cloudflare R2

How I Built a Secure File Transfer App with Django, ClamAV, and Cloudflare R2

Comments
2 min read
An npm Package for AI Agent Orchestration Just Shipped With Its Front Door Unlocked. Here's What the CVE Actually Reveals.

An npm Package for AI Agent Orchestration Just Shipped With Its Front Door Unlocked. Here's What the CVE Actually Reveals.

17
Comments
4 min read
We Scored 14,824 MCP Servers on Behavioral Trust — Here's What We Found

We Scored 14,824 MCP Servers on Behavioral Trust — Here's What We Found

1
Comments 2
2 min read
Auth migrations break on session strategy, not login screens

Auth migrations break on session strategy, not login screens

Comments
9 min read
Introducing hapi-aegis: Helmet-style security headers for hapi.js

Introducing hapi-aegis: Helmet-style security headers for hapi.js

Comments
3 min read
Application Web

Application Web

Comments
3 min read
nukon-pi-detect: a tiny, offline prompt-injection scanner for CI pipelines

nukon-pi-detect: a tiny, offline prompt-injection scanner for CI pipelines

Comments
1 min read
I built an MCP-native OSINT framework that lets AI agents investigate from your terminal

I built an MCP-native OSINT framework that lets AI agents investigate from your terminal

2
Comments
6 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.