DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Monitoring Hardened Domain Controllers Without Admin Rights: The Five Permission Layers Nobody Documents

Monitoring Hardened Domain Controllers Without Admin Rights: The Five Permission Layers Nobody Documents

Comments
8 min read
Why Your Unit Tests Aren't Enough (And How to Break Your Own API)

Why Your Unit Tests Aren't Enough (And How to Break Your Own API)

2
Comments 3
5 min read
Implementing Mutual TLS (mTLS) in Go Microservices

Implementing Mutual TLS (mTLS) in Go Microservices

1
Comments
5 min read
Prove Your Mobile Upload Removed EXIF GPS Before the Retry Queue Keeps a Copy

Prove Your Mobile Upload Removed EXIF GPS Before the Retry Queue Keeps a Copy

1
Comments 1
1 min read
Create and secure webhooks with the Nylas API

Create and secure webhooks with the Nylas API

Comments
8 min read
I almost reported a critical bug that didn't exist. One constant saved me.

I almost reported a critical bug that didn't exist. One constant saved me.

Comments
4 min read
An AI agent exported a patient record. Your logs can't say who told it to.

An AI agent exported a patient record. Your logs can't say who told it to.

Comments 2
6 min read
My app's anti-theft feature locked every user out

My app's anti-theft feature locked every user out

1
Comments 1
4 min read
My Router Was a Buffet for Bots. So I Built It a Bouncer.

My Router Was a Buffet for Bots. So I Built It a Bouncer.

4
Comments
7 min read
I scanned GitLab's source code and found 2,449 undocumented API routes

I scanned GitLab's source code and found 2,449 undocumented API routes

Comments
4 min read
0.2.0: I shipped the coverage my own page had already promised

0.2.0: I shipped the coverage my own page had already promised

Comments
7 min read
OpenAI ships GPT-Red to automate prompt-injection testing against AI agents

OpenAI ships GPT-Red to automate prompt-injection testing against AI agents

Comments
2 min read
Hardcoded Secrets: Why AI Code Fails Your First SOC 2 Audit

Hardcoded Secrets: Why AI Code Fails Your First SOC 2 Audit

Comments 1
3 min read
How to Scan Your Codebase for Quantum-Vulnerable Cryptography (Free Open Source Tool)

How to Scan Your Codebase for Quantum-Vulnerable Cryptography (Free Open Source Tool)

Comments
3 min read
Implementing Webhook Signature Verification (GitHub, Stripe, Slack)

Implementing Webhook Signature Verification (GitHub, Stripe, Slack)

Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.