DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Security questions every senior backend engineer should handle

Security questions every senior backend engineer should handle

Comments
5 min read
agent-authz: Least-Privilege Authorization for AI Agent Tool Calls

agent-authz: Least-Privilege Authorization for AI Agent Tool Calls

Comments
4 min read
I scanned 55 public Lovable apps — all 55 had a GDPR or security finding

I scanned 55 public Lovable apps — all 55 had a GDPR or security finding

Comments
4 min read
GLM-5.3, 756GB of Weights, and the Ten Billion Dollar Gate

GLM-5.3, 756GB of Weights, and the Ten Billion Dollar Gate

3
Comments 2
3 min read
How to Protect an API From DDoS Attacks: A Complete Guide

How to Protect an API From DDoS Attacks: A Complete Guide

Comments
11 min read
Auditing AI agent activity: structured logs for credential access

Auditing AI agent activity: structured logs for credential access

Comments
2 min read
AI Made Bugs Cheap to Find

AI Made Bugs Cheap to Find

Comments 1
6 min read
pass vs Bitwarden for AI agent credentials: which works with agents

pass vs Bitwarden for AI agent credentials: which works with agents

Comments
2 min read
OAuth device flow explained: how CLIs and AI agents approve access

OAuth device flow explained: how CLIs and AI agents approve access

Comments
3 min read
2864743186439, or the day the compiler answered wrong without flinching

2864743186439, or the day the compiler answered wrong without flinching

Comments
7 min read
Your Coding Agent's Supply Chain Is a Mess. Here's How to Harden It.

Your Coding Agent's Supply Chain Is a Mess. Here's How to Harden It.

Comments
5 min read
SQLite forensics: why deleting rows doesn't erase secrets (FTS, free pages, VACUUM)

SQLite forensics: why deleting rows doesn't erase secrets (FTS, free pages, VACUUM)

Comments
3 min read
Prompt injection and API key exfiltration: what actually happens

Prompt injection and API key exfiltration: what actually happens

Comments
3 min read
You Are the Shadow AI Your Security Team Is Worried About

You Are the Shadow AI Your Security Team Is Worried About

Comments
4 min read
Phase 8 — Making It Trustworthy: Hardening a FastAPI App with an Audit, a Test Net, and a Logging Bug I Typed Twice

Phase 8 — Making It Trustworthy: Hardening a FastAPI App with an Audit, a Test Net, and a Logging Bug I Typed Twice

Comments 1
13 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.