DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Why Detection-Based AI Governance Fails (And What to Do Instead)

Why Detection-Based AI Governance Fails (And What to Do Instead)

Comments
4 min read
I Let AI Agents Run My Bug Bounty Program. Here Is What Happened.

I Let AI Agents Run My Bug Bounty Program. Here Is What Happened.

Comments
2 min read
SPENDING_LIMIT Policy: Cap Your AI Agent's Daily Transaction Volume

SPENDING_LIMIT Policy: Cap Your AI Agent's Daily Transaction Volume

Comments
5 min read
Three Reports This Week Say the Same Thing: Your IAM Was Not Built for AI Agents

Three Reports This Week Say the Same Thing: Your IAM Was Not Built for AI Agents

Comments
3 min read
The 2026 Frontier: Why Tunneling is Now a Compliance Problem

The 2026 Frontier: Why Tunneling is Now a Compliance Problem

Comments
9 min read
Implementing SAST in Your Infrastructure: Detecting Vulnerabilities with Checkov and GitHub Actions

Implementing SAST in Your Infrastructure: Detecting Vulnerabilities with Checkov and GitHub Actions

5
Comments 1
2 min read
OWASP Just Ranked Agent Identity Abuse as the #3 Risk in Agentic AI. Here Is Why.

OWASP Just Ranked Agent Identity Abuse as the #3 Risk in Agentic AI. Here Is Why.

Comments
3 min read
LLMアプリケーション テスト完全ガイド:Promptfoo徹底解説(2026年)

LLMアプリケーション テスト完全ガイド:Promptfoo徹底解説(2026年)

Comments
4 min read
Approval Gates: How to Make AI Agents Safe for Real-World Operations

Approval Gates: How to Make AI Agents Safe for Real-World Operations

Comments
2 min read
Implementing SAST in Python: Detecting Vulnerabilities with Bandit

Implementing SAST in Python: Detecting Vulnerabilities with Bandit

5
Comments 1
2 min read
Why JWTs Are a Security Nightmare for Mobile Apps

Why JWTs Are a Security Nightmare for Mobile Apps

1
Comments
2 min read
What Your .NET Exceptions Are Telling Attackers (And How to Stop It)

What Your .NET Exceptions Are Telling Attackers (And How to Stop It)

4
Comments
10 min read
The Wrong Abstraction

The Wrong Abstraction

Comments 1
7 min read
Information Security Concepts Explained: Risk, Vulnerabilities, Threats & Controls (2026)

Information Security Concepts Explained: Risk, Vulnerabilities, Threats & Controls (2026)

Comments 1
10 min read
1Password CTO: SPIFFE for Agents Is a Square Peg. Google Wants Real-Time Trust. The Gap Is Clear.

1Password CTO: SPIFFE for Agents Is a Square Peg. Google Wants Real-Time Trust. The Gap Is Clear.

1
Comments
4 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.