DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
The YOLO Attack: how hackers are hijacking AI agents by flipping one switch

The YOLO Attack: how hackers are hijacking AI agents by flipping one switch

Comments
6 min read
I built a real-time AI security monitor for local files — here's how the eepban engine works

I built a real-time AI security monitor for local files — here's how the eepban engine works

Comments
2 min read
ReconSpider: HTB Web Enumeration Tool Guide (2026)

ReconSpider: HTB Web Enumeration Tool Guide (2026)

Comments
12 min read
Burp Suite for HTB & CTF Players: Complete Guide (2026)

Burp Suite for HTB & CTF Players: Complete Guide (2026)

Comments
16 min read
Security Bite: Package Hallucination — What It Is and How to Fix It

Security Bite: Package Hallucination — What It Is and How to Fix It

Comments
2 min read
How Attackers Exploit Trust Signals Like HTTPS and UI Design

How Attackers Exploit Trust Signals Like HTTPS and UI Design

Comments
10 min read
GHSA-XJVP-7243-RG9H: GHSA-xjvp-7243-rg9h: Critical Path Traversal in Wish SCP Middleware Allows Arbitrary File Read/Write

GHSA-XJVP-7243-RG9H: GHSA-xjvp-7243-rg9h: Critical Path Traversal in Wish SCP Middleware Allows Arbitrary File Read/Write

Comments
2 min read
Data Privacy in Regulated Applications: What Developers Need to Know

Data Privacy in Regulated Applications: What Developers Need to Know

Comments
7 min read
MCP security has 4 layers. Most teams have 2.

MCP security has 4 layers. Most teams have 2.

1
Comments
4 min read
53% of AI Agents Exceed Their Permissions. That's an Architecture Problem.

53% of AI Agents Exceed Their Permissions. That's an Architecture Problem.

Comments
8 min read
CSP for Third Party Scripts: The Practical Cheat Sheet for GA, Stripe, Intercom, and More

CSP for Third Party Scripts: The Practical Cheat Sheet for GA, Stripe, Intercom, and More

1
Comments
6 min read
Your Emails Go to Spam Because of Three DNS Records You Never Set Up

Your Emails Go to Spam Because of Three DNS Records You Never Set Up

Comments
5 min read
We Had Secrets in Kubernetes. Then We Got Audited.

We Had Secrets in Kubernetes. Then We Got Audited.

1
Comments
6 min read
Try asqav in 30 seconds

Try asqav in 30 seconds

Comments
2 min read
From Zero to Hero: Building a Key Issuance Server with `verbose` and `figtree`

From Zero to Hero: Building a Key Issuance Server with `verbose` and `figtree`

Comments
21 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.