DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Your AWS Credentials Are Still on GitHub Even After You Delete Them

Your AWS Credentials Are Still on GitHub Even After You Delete Them

2
Comments
5 min read
Verify Post-Quantum TLS Negotiation from Python `requests` on Linux

Verify Post-Quantum TLS Negotiation from Python `requests` on Linux

Comments
4 min read
JWT Authentication: Securing API Routes with JSON Web Tokens in FastAPI

JWT Authentication: Securing API Routes with JSON Web Tokens in FastAPI

1
Comments
2 min read
GHSA-33HQ-FVWR-56PM: The Billion-Comma Attack: Nuking Svelte SSR with Sparse Arrays

GHSA-33HQ-FVWR-56PM: The Billion-Comma Attack: Nuking Svelte SSR with Sparse Arrays

Comments
2 min read
I built a tokenless secrets manager that runs entirely on Git and KMS (No Vault required)

I built a tokenless secrets manager that runs entirely on Git and KMS (No Vault required)

2
Comments 2
3 min read
How to Fix Regenerating index.php Malware in WordPress When Scanners Fail

How to Fix Regenerating index.php Malware in WordPress When Scanners Fail

Comments
8 min read
GHSA-6C9J-X93C-RW6J: OpenClaw Side-Channel: The `safeBins` File Existence Oracle

GHSA-6C9J-X93C-RW6J: OpenClaw Side-Channel: The `safeBins` File Existence Oracle

Comments
2 min read
The Security Gap in MCP Tool Servers (And What I Built to Fix It)

The Security Gap in MCP Tool Servers (And What I Built to Fix It)

Comments
8 min read
Client-Side Security: Why Our Developer Tools Never Touch Your Data

Client-Side Security: Why Our Developer Tools Never Touch Your Data

Comments
3 min read
Protecting Language Models Against Unauthorized Distillation through Trace Rewriting

Protecting Language Models Against Unauthorized Distillation through Trace Rewriting

Comments
4 min read
x402 turned a joke into my revenue model ($0.008/request, no API keys)

x402 turned a joke into my revenue model ($0.008/request, no API keys)

1
Comments 1
3 min read
When Projects Fail: Why Companies Should Treat Open Source as Infrastructure

When Projects Fail: Why Companies Should Treat Open Source as Infrastructure

54
Comments 7
4 min read
Democratizing Internal Data — Building an MCP Server That Lets You Search 991 Tables in Natural Language

Democratizing Internal Data — Building an MCP Server That Lets You Search 991 Tables in Natural Language

11
Comments
14 min read
Introducing SidClaw: The Missing Approval Layer for AI Agents

Introducing SidClaw: The Missing Approval Layer for AI Agents

1
Comments
4 min read
Week 10: Security Engineering Phone Screen: 10 Questions You Must Answer Fluently

Week 10: Security Engineering Phone Screen: 10 Questions You Must Answer Fluently

1
Comments
12 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.