DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
A Poisoned npm Package Infected Our Production Server, Here's How We Found and Removed It

A Poisoned npm Package Infected Our Production Server, Here's How We Found and Removed It

Comments
3 min read
Scan an MCP server before you connect it to your agent

Scan an MCP server before you connect it to your agent

Comments 4
5 min read
Exposed PLCs in the Water Sector: What CISA's Alert Reveals About Internet-Facing OT

Exposed PLCs in the Water Sector: What CISA's Alert Reveals About Internet-Facing OT

Comments
5 min read
Working-Set Overflow: When a Local Agent Should Yield to a Free Server

Working-Set Overflow: When a Local Agent Should Yield to a Free Server

Comments
7 min read
Password Strength + Crack Time Estimators

Password Strength + Crack Time Estimators

Comments
12 min read
Langflow CVE-2026-12944: How a Scanner Blocklist Gap Turns Into Root Code Execution

Langflow CVE-2026-12944: How a Scanner Blocklist Gap Turns Into Root Code Execution

Comments
4 min read
Your Session Cookie Is Basically a Temporary Password - Part 1

Your Session Cookie Is Basically a Temporary Password - Part 1

Comments
6 min read
The Iron Throne Problem: Why Everyone Wants Admin Access and Nobody Should Have It

The Iron Throne Problem: Why Everyone Wants Admin Access and Nobody Should Have It

Comments
3 min read
Conflicting IP reputation scores: what to check before replacing a proxy

Conflicting IP reputation scores: what to check before replacing a proxy

Comments
4 min read
Can You Vibe Code an OS Without Lying to Yourself?

Can You Vibe Code an OS Without Lying to Yourself?

1
Comments
6 min read
Shadow APIs: Uncovering Unmonitored Endpoints in Microservice Architectures

Shadow APIs: Uncovering Unmonitored Endpoints in Microservice Architectures

1
Comments
8 min read
I Reverse-Engineered an APK Protected by XopProtector — and It Changed How I Look at Android

I Reverse-Engineered an APK Protected by XopProtector — and It Changed How I Look at Android

Comments
7 min read
A new server gets its first unsolicited packet in 3.77 seconds

A new server gets its first unsolicited packet in 3.77 seconds

10
Comments 2
5 min read
MikroTrick, Part One: How CVE-2026-67277 Breaks RouterOS Authentication

MikroTrick, Part One: How CVE-2026-67277 Breaks RouterOS Authentication

Comments
4 min read
Building a 19D Kinematic Biometrics Engine for Bot Mitigation in FastAPI

Building a 19D Kinematic Biometrics Engine for Bot Mitigation in FastAPI

1
Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.