DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Security Basics for AI Apps and APIs

Security Basics for AI Apps and APIs

Comments
4 min read
AI Reasoning Leak: Extracting Models' Inner Thoughts

AI Reasoning Leak: Extracting Models' Inner Thoughts

Comments
7 min read
Every way to give an AI agent SSH access, ranked by blast radius

Every way to give an AI agent SSH access, ranked by blast radius

Comments
6 min read
Sessions vs JWTs: you are choosing how often you pay for state

Debates hidden state costs and revocation traps

Sessions vs JWTs: you are choosing how often you pay for state

28
Comments 7
8 min read
Prompt Injection: Simple Defenses That Actually Help

Prompt Injection: Simple Defenses That Actually Help

Comments
3 min read
Cost Rationalization of Application Security Tools: Building a Business Case for Retaining the Right Security Investments

Cost Rationalization of Application Security Tools: Building a Business Case for Retaining the Right Security Investments

Comments
5 min read
What Static Review Can Catch in an Exported n8n Workflow Before Production

What Static Review Can Catch in an Exported n8n Workflow Before Production

Comments
2 min read
OWASP A01 and A02: Broken Access Control and Security Misconfiguration

OWASP A01 and A02: Broken Access Control and Security Misconfiguration

5
Comments 1
3 min read
NETO: Chat P2P local para equipos dev, sin nube y cifrado de extremo a extremo

NETO: Chat P2P local para equipos dev, sin nube y cifrado de extremo a extremo

Comments 1
1 min read
WindRelay + SpyNote: Phone Remote Control and NFC Relay for Loan and Card Fraud

WindRelay + SpyNote: Phone Remote Control and NFC Relay for Loan and Card Fraud

Comments
6 min read
Implementing RBAC (Role-Based Access Control) in a Go REST API

Implementing RBAC (Role-Based Access Control) in a Go REST API

Comments
5 min read
Lazarus "Operation Dream Job": From Windows Zero-Day to EDR Bypass and Backdoor Deployment

Lazarus "Operation Dream Job": From Windows Zero-Day to EDR Bypass and Backdoor Deployment

Comments
6 min read
Model Logins as Identities, Credentials, and Sessions

Model Logins as Identities, Credentials, and Sessions

Comments
4 min read
A Remote Coding Agent Can Deadlock on a Local Permission Dialog

A Remote Coding Agent Can Deadlock on a Local Permission Dialog

Comments 2
3 min read
Your Browser Agent Needs a Session Boundary, Not Just a Login

Your Browser Agent Needs a Session Boundary, Not Just a Login

Comments
4 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.