DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Cryptographic Proof of Exchange: How We Use Ed25519 to Sign Every Transaction Before It Happens

Cryptographic Proof of Exchange: How We Use Ed25519 to Sign Every Transaction Before It Happens

1
Comments 1
4 min read
CVE-2026-26268: How Cloning a Repo Can Now Execute Attacker Code in Your AI IDE

CVE-2026-26268: How Cloning a Repo Can Now Execute Attacker Code in Your AI IDE

10
Comments
6 min read
We Scanned the Top 50 ClawHub Skills — Here's What We Found

We Scanned the Top 50 ClawHub Skills — Here's What We Found

1
Comments
3 min read
Axios was compromised for 3 hours - how to find it in your running Kubernetes clusters

Axios was compromised for 3 hours - how to find it in your running Kubernetes clusters

Comments
5 min read
Per-agent hash chain, with a verifier that re-derives

Per-agent hash chain, with a verifier that re-derives

Comments
2 min read
Every rejection leaves a trail, persistent log of rejected attempts

Every rejection leaves a trail, persistent log of rejected attempts

Comments
1 min read
The Claude Code Leak Proved What We've Been Building For

The Claude Code Leak Proved What We've Been Building For

Comments
3 min read
Claude Code Leak: Lessons in npm Security, TypeScript Analysis, and AI Tool Architecture

Claude Code Leak: Lessons in npm Security, TypeScript Analysis, and AI Tool Architecture

1
Comments
9 min read
How to Secure GitHub Actions: OIDC Authentication, Least Privilege, and Supply Chain Attack Prevention

How to Secure GitHub Actions: OIDC Authentication, Least Privilege, and Supply Chain Attack Prevention

1
Comments
18 min read
Verify is not just true or false, granular outcomes on /verify

Verify is not just true or false, granular outcomes on /verify

Comments
1 min read
IAM Access Analyzer nuked our prod hotfix because I fundamentally misunderstood how Zelkova evaluates wildcards

IAM Access Analyzer nuked our prod hotfix because I fundamentally misunderstood how Zelkova evaluates wildcards

Comments
2 min read
what if MCP servers had a Lighthouse-style security score?

what if MCP servers had a Lighthouse-style security score?

1
Comments
2 min read
7 Filesystem Attacks Your Go CLI is Vulnerable To — And How to Fix Them

7 Filesystem Attacks Your Go CLI is Vulnerable To — And How to Fix Them

Comments
8 min read
SecureWipe: ANSSI and NIST-compliant secure disk erasure, because rm -rf isn't enough

SecureWipe: ANSSI and NIST-compliant secure disk erasure, because rm -rf isn't enough

Comments
3 min read
CVE-2025-53521: F5 BIG-IP APM RCE — CISA Deadline Is March 30

CVE-2025-53521: F5 BIG-IP APM RCE — CISA Deadline Is March 30

Comments
9 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.