DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
What Delve Got Wrong: Why Compliance Evidence Needs to Be Cryptographically Provable

What Delve Got Wrong: Why Compliance Evidence Needs to Be Cryptographically Provable

1
Comments
3 min read
We kept thinking SentinelGate was ready. It wasn't.

We kept thinking SentinelGate was ready. It wasn't.

Comments
6 min read
We built a free CRA compliance scorer into a silicon advisor. Here's what we learned.

We built a free CRA compliance scorer into a silicon advisor. Here's what we learned.

1
Comments
3 min read
CVE-2026-25896: Regex Injection in fast-xml-parser: Shadowing the <

CVE-2026-25896: Regex Injection in fast-xml-parser: Shadowing the <

Comments
2 min read
RASP vs WAF: The Key Differences and Why You Need a Third Approach

RASP vs WAF: The Key Differences and Why You Need a Third Approach

Comments
9 min read
Building a Cost-Effective Windows Code Signing Pipeline with Sectigo, Google Cloud KMS, and GitHub Actions

Building a Cost-Effective Windows Code Signing Pipeline with Sectigo, Google Cloud KMS, and GitHub Actions

Comments
9 min read
Vercel’s "Agentic" Shift: Is Your Proprietary Code Now Training AI?

Vercel’s "Agentic" Shift: Is Your Proprietary Code Now Training AI?

8
Comments 1
2 min read
Your LangChain Agent Has No Security. Neither Does CrewAI, OpenAI, or 6 Others.

Your LangChain Agent Has No Security. Neither Does CrewAI, OpenAI, or 6 Others.

2
Comments
4 min read
I Built 7 MCP Servers for Security Tools. The Protocol Was the Easy Part.

I Built 7 MCP Servers for Security Tools. The Protocol Was the Easy Part.

5
Comments 3
3 min read
We Built a Python SDK Where the Credentials Never Enter Your Code

We Built a Python SDK Where the Credentials Never Enter Your Code

6
Comments
3 min read
I Spent 3 Months Solving a Security Gap Nobody Talks About: LLM Artifact Integrity

I Spent 3 Months Solving a Security Gap Nobody Talks About: LLM Artifact Integrity

Comments
5 min read
135K AI Agents Exposed: I Built an Open-Source Host Guardian to Fix It

135K AI Agents Exposed: I Built an Open-Source Host Guardian to Fix It

Comments
3 min read
Default-Deny Policies: Why Your AI Agent Can't Touch What You Don't Allow

Default-Deny Policies: Why Your AI Agent Can't Touch What You Don't Allow

Comments
5 min read
AI-Generated Code Risks: Addressing Security Threats from Vulnerable Self-Hosted Projects

AI-Generated Code Risks: Addressing Security Threats from Vulnerable Self-Hosted Projects

1
Comments
8 min read
Your DEV Credentials Shouldn't Be Able to Sink PROD

Your DEV Credentials Shouldn't Be Able to Sink PROD

Comments
7 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.