DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
The Day Facebook Went Offline: A Case Study in Centralization

The Day Facebook Went Offline: A Case Study in Centralization

Comments
3 min read
App Groups Are Not Secure by Default - Here's How to Fix That

App Groups Are Not Secure by Default - Here's How to Fix That

1
Comments
9 min read
$599K Lost to Address Poisoning: A Technical Post-Mortem on UI/UX Vulnerabilities

$599K Lost to Address Poisoning: A Technical Post-Mortem on UI/UX Vulnerabilities

Comments
3 min read
Fortifying Web Applications: Understanding CSRF (Cross-Site Request Forgery)

Fortifying Web Applications: Understanding CSRF (Cross-Site Request Forgery)

1
Comments
2 min read
OPA (Open Policy Agent) with Gatekeeper

OPA (Open Policy Agent) with Gatekeeper

2
Comments
7 min read
The Blocklist That Forgot About Time

The Blocklist That Forgot About Time

1
Comments
4 min read
Record-level Permissions in HazelJS with @hazeljs/casl

Record-level Permissions in HazelJS with @hazeljs/casl

1
Comments
8 min read
Verify Post-Quantum TLS Negotiation from Python `requests` on Linux

Verify Post-Quantum TLS Negotiation from Python `requests` on Linux

Comments
4 min read
GHSA-33HQ-FVWR-56PM: The Billion-Comma Attack: Nuking Svelte SSR with Sparse Arrays

GHSA-33HQ-FVWR-56PM: The Billion-Comma Attack: Nuking Svelte SSR with Sparse Arrays

Comments
2 min read
JWT Authentication: Securing API Routes with JSON Web Tokens in FastAPI

JWT Authentication: Securing API Routes with JSON Web Tokens in FastAPI

1
Comments
2 min read
GHSA-6C9J-X93C-RW6J: OpenClaw Side-Channel: The `safeBins` File Existence Oracle

GHSA-6C9J-X93C-RW6J: OpenClaw Side-Channel: The `safeBins` File Existence Oracle

Comments
2 min read
Week 6 OAuth2 Conceptual Quiz

Week 6 OAuth2 Conceptual Quiz

1
Comments
10 min read
They Hacked the CSS: Inside Chrome’s First Zero-Day of 2026 (CVE-2026-2441)

They Hacked the CSS: Inside Chrome’s First Zero-Day of 2026 (CVE-2026-2441)

5
Comments
3 min read
Client-Side Security: Why Our Developer Tools Never Touch Your Data

Client-Side Security: Why Our Developer Tools Never Touch Your Data

Comments
3 min read
Protecting Language Models Against Unauthorized Distillation through Trace Rewriting

Protecting Language Models Against Unauthorized Distillation through Trace Rewriting

Comments
4 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.