DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
The Supply Chain Attack That's Already In Your Codebase

The Supply Chain Attack That's Already In Your Codebase

Comments
6 min read
Your API Rate-Limit Is Useless Against Distributed Attacks

Your API Rate-Limit Is Useless Against Distributed Attacks

Comments
8 min read
The 73% Problem: Why Enterprise Prompt Injection Fixes Don't Work (And What Actually Does)

The 73% Problem: Why Enterprise Prompt Injection Fixes Don't Work (And What Actually Does)

Comments
6 min read
FAQ: Agentic AI Security Threats — Your Top Questions Answered

FAQ: Agentic AI Security Threats — Your Top Questions Answered

Comments
4 min read
Serving RSA and ECDSA from One ASP.NET Core Kestrel Endpoint

Serving RSA and ECDSA from One ASP.NET Core Kestrel Endpoint

2
Comments
7 min read
Misconfigured AI Agents Leak Data by Default — Your 4-Week Audit Playbook

Misconfigured AI Agents Leak Data by Default — Your 4-Week Audit Playbook

Comments
5 min read
pagevault: Hiding an Encryption Platform Inside HTML

pagevault: Hiding an Encryption Platform Inside HTML

1
Comments
4 min read
How to Detect Compromised Dependencies in Your CI/CD Pipeline: The Supply Chain Trust Paradox

How to Detect Compromised Dependencies in Your CI/CD Pipeline: The Supply Chain Trust Paradox

Comments
7 min read
How to Detect Compromised Dependencies in Your CI/CD Pipeline Before They Deploy to Production

How to Detect Compromised Dependencies in Your CI/CD Pipeline Before They Deploy to Production

1
Comments
6 min read
Automated Secret Rotation: How to Prevent Credential Sprawl Without Breaking CI/CD

Automated Secret Rotation: How to Prevent Credential Sprawl Without Breaking CI/CD

Comments
6 min read
Beyond Artifact-Only Evaluation: A Case for Development-Session Attestation (DSA)

Beyond Artifact-Only Evaluation: A Case for Development-Session Attestation (DSA)

Comments
5 min read
FAQ: Supply-Chain Attacks — 10 Questions You're Asking (And Answers That Matter)

FAQ: Supply-Chain Attacks — 10 Questions You're Asking (And Answers That Matter)

1
Comments
7 min read
Zero-Trust at the Edge: Rethinking the eDMZ Perimeter (Part 1)

Zero-Trust at the Edge: Rethinking the eDMZ Perimeter (Part 1)

1
Comments
6 min read
Synthetic Identity Fraud: The $5B Shadow Economy You Can't See

Synthetic Identity Fraud: The $5B Shadow Economy You Can't See

Comments
6 min read
CVE-2026-27129: Craft CMS SSRF: The IPv6 Ghost in the Machine

CVE-2026-27129: Craft CMS SSRF: The IPv6 Ghost in the Machine

Comments
2 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.