DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
ભાડજ ના બિલ્ડર શ્રીનિવાસ વણઝારાનો આતંક!

ભાડજ ના બિલ્ડર શ્રીનિવાસ વણઝારાનો આતંક!

5
Comments
1 min read
Do you access a server with username and password? It's a combination padlock facing the street

Do you access a server with username and password? It's a combination padlock facing the street

Comments
9 min read
A Prompt-Injection Detector That Only Speaks English

Multilingual tests reveal massive security gaps

A Prompt-Injection Detector That Only Speaks English

3
Comments 5
7 min read
What 60 documented AI agent failures reveal about coding-agent risk

What 60 documented AI agent failures reveal about coding-agent risk

Comments
3 min read
100 Days of DevOps and Cloud (AWS), Day 13: Firewall Rules Are About Order, and Creating an AMI Reboots the Instance

100 Days of DevOps and Cloud (AWS), Day 13: Firewall Rules Are About Order, and Creating an AMI Reboots the Instance

1
Comments
3 min read
innerHTML Has Five Doors. Most Reviews Only Watch One.

innerHTML Has Five Doors. Most Reviews Only Watch One.

2
Comments 3
5 min read
GTIG: 2026 OSS Supply Chain Compromise, Credential Theft, and Self-Propagation

GTIG: 2026 OSS Supply Chain Compromise, Credential Theft, and Self-Propagation

Comments
5 min read
KindaRails2Shell (CVE-2026-66066): Arbitrary File Read and RCE via Active Storage Uploads

KindaRails2Shell (CVE-2026-66066): Arbitrary File Read and RCE via Active Storage Uploads

Comments
4 min read
STAC4749: Chaos Ransomware in Under 17 Hours via Teams IT Support Scam

STAC4749: Chaos Ransomware in Under 17 Hours via Teams IT Support Scam

Comments
5 min read
TA488 OWAReaper: A "Half-Click" Attack that Adds Persistence Inside OWA Just by Opening an Email

TA488 OWAReaper: A "Half-Click" Attack that Adds Persistence Inside OWA Just by Opening an Email

Comments
5 min read
RufRoot (CVE-2026-59726): Full Compromise of AI Agent Infrastructure via Unauthenticated MCP Bridge

RufRoot (CVE-2026-59726): Full Compromise of AI Agent Infrastructure via Unauthenticated MCP Bridge

Comments
5 min read
21% of IT Leaders Say They Can't See Their Own AI Agents. I Fed 11 of My Own Checks Empty Input, and 5 Passed in Silence.

21% of IT Leaders Say They Can't See Their Own AI Agents. I Fed 11 of My Own Checks Empty Input, and 5 Passed in Silence.

1
Comments 1
11 min read
How to Stop Using Access Keys and Keep Them from Leaking

How to Stop Using Access Keys and Keep Them from Leaking

1
Comments 2
5 min read
Prompt Injection Isn't Fixed by a Filter. It's Fixed by Architecture

Prompt Injection Isn't Fixed by a Filter. It's Fixed by Architecture

Comments
22 min read
GitLab Duo Security Review Flow goes after the logic bugs SAST leaves on the floor

GitLab Duo Security Review Flow goes after the logic bugs SAST leaves on the floor

Comments
4 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.