DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
The Risks of Sharing Internal Source Code via External Tools

The Risks of Sharing Internal Source Code via External Tools

Comments
4 min read
What Is Browser Fingerprinting? How Websites Track You Without Cookies (2026)

What Is Browser Fingerprinting? How Websites Track You Without Cookies (2026)

Comments
4 min read
OWASP Agentic Top 10 — What Every AI Developer Should Know in 2026

OWASP Agentic Top 10 — What Every AI Developer Should Know in 2026

Comments
8 min read
78% of Production AI Systems Score F on Prompt Defense — Data from 1,646 Leaked System Prompts

78% of Production AI Systems Score F on Prompt Defense — Data from 1,646 Leaked System Prompts

Comments
7 min read
Essential SSL Certificate Validity Facts to Protect Sites

Essential SSL Certificate Validity Facts to Protect Sites

Comments
7 min read
Partial Password Authentication

Partial Password Authentication

39
Comments
6 min read
Passwordless Login Needs Less Than Passkeys

Passwordless Login Needs Less Than Passkeys

Comments
6 min read
npm Publish Without Tokens

npm Publish Without Tokens

Comments
3 min read
Checkov's OIDC Bug: Why CKV_AWS_358 Misses 80% of Misconfigurations

Checkov's OIDC Bug: Why CKV_AWS_358 Misses 80% of Misconfigurations

Comments
3 min read
The Compliance Trap: Why 90% of Security Scans are Technically Correct but Strategically Worthless

The Compliance Trap: Why 90% of Security Scans are Technically Correct but Strategically Worthless

Comments
7 min read
The Cheapest Way to Self-Host Vaultwarden in 2026

The Cheapest Way to Self-Host Vaultwarden in 2026

Comments
9 min read
Why I built attack-chain correlation on top of Semgrep and Joern

Why I built attack-chain correlation on top of Semgrep and Joern

Comments
3 min read
When Your Security Scanner Becomes the Weapon: Lessons from the Trivy Supply Chain Attack

When Your Security Scanner Becomes the Weapon: Lessons from the Trivy Supply Chain Attack

1
Comments
2 min read
Securing Package Manager Postinstall Scripts: Mitigating Access to Sensitive User Data During Installation

Securing Package Manager Postinstall Scripts: Mitigating Access to Sensitive User Data During Installation

Comments
8 min read
Why AI Agent Authorization Is Still Unsolved in 2026

Why AI Agent Authorization Is Still Unsolved in 2026

Comments
7 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.