DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
The Invisible Attack: How CSS Can Hijack Your AI Agent

The Invisible Attack: How CSS Can Hijack Your AI Agent

Comments
2 min read
I Built an MCP Tool That Scans Smart Contracts for Security Risks

I Built an MCP Tool That Scans Smart Contracts for Security Risks

1
Comments
2 min read
Rogue AI Agents Are Peer-Pressuring Each Other. The Fix Isn't More Training.

Rogue AI Agents Are Peer-Pressuring Each Other. The Fix Isn't More Training.

Comments
7 min read
AI Guardrail Poisoning: Someone Rewrote McKinsey’s Lilli With One SQL Query

AI Guardrail Poisoning: Someone Rewrote McKinsey’s Lilli With One SQL Query

Comments
7 min read
Why Can We Use "Shorter" Keys?: Key Length vs Security Bits, the Real Story

Why Can We Use "Shorter" Keys?: Key Length vs Security Bits, the Real Story

Comments
11 min read
I read every key file in Cline's 560K-line codebase. Here's what's actually inside.

I read every key file in Cline's 560K-line codebase. Here's what's actually inside.

2
Comments 2
3 min read
Your AI Agent Has Your Stripe Key. What Could Go Wrong?

Your AI Agent Has Your Stripe Key. What Could Go Wrong?

5
Comments
4 min read
3 AI Agent Guardrail Failure Modes from the HN CTF

3 AI Agent Guardrail Failure Modes from the HN CTF

Comments
3 min read
Cloudflare and GitHub are building identity systems for AI agents. We're not ready for this.

Cloudflare and GitHub are building identity systems for AI agents. We're not ready for this.

Comments
3 min read
Server builds, wallet signs, webhooks confirm — a non-custodial Web3 checkout pattern with Solana

Server builds, wallet signs, webhooks confirm — a non-custodial Web3 checkout pattern with Solana

Comments
1 min read
Real-Time SQL Analysis in VS Code: Catch Dangerous Queries Before You Save the File

Real-Time SQL Analysis in VS Code: Catch Dangerous Queries Before You Save the File

1
Comments
3 min read
Subdomain takeovers are still embarrassingly common...

Subdomain takeovers are still embarrassingly common...

2
Comments
2 min read
Stop Shipping Ungoverned AI: Add Policy Gates, Audit Trails, and Compliance to Every LLM Call

Stop Shipping Ungoverned AI: Add Policy Gates, Audit Trails, and Compliance to Every LLM Call

Comments
7 min read
EU Cyber Resilience Act: What It Means for Your Codebase and How to Prepare

EU Cyber Resilience Act: What It Means for Your Codebase and How to Prepare

Comments
3 min read
IDOR in AI-Generated APIs: What Cursor Won't Check Automatically

IDOR in AI-Generated APIs: What Cursor Won't Check Automatically

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.