DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
12 Ways Attackers Bypass Prompt Injection Scanners (We Built Defenses for All of Them)

12 Ways Attackers Bypass Prompt Injection Scanners (We Built Defenses for All of Them)

1
Comments
3 min read
Your .env File Is Probably in Your Git History (Here's How to Check)

Your .env File Is Probably in Your Git History (Here's How to Check)

Comments
4 min read
I Built a Free API Vulnerability Scanner — It Found 23 Issues in My Own Code

I Built a Free API Vulnerability Scanner — It Found 23 Issues in My Own Code

Comments
5 min read
Stop Using API Keys in Environment Variables — Here's What to Do Instead

Stop Using API Keys in Environment Variables — Here's What to Do Instead

Comments
3 min read
Passkey Management and Account Recovery in Symfony

Passkey Management and Account Recovery in Symfony

4
Comments
8 min read
Have I Been Pwned Has a Free API — Check If Any Email Was in a Data Breach

Have I Been Pwned Has a Free API — Check If Any Email Was in a Data Breach

Comments
4 min read
How to Stop My Agent from Getting Me Fired

How to Stop My Agent from Getting Me Fired

36
Comments 10
10 min read
Is Your Crypto Bounty Token a Security? A Developer's Guide to the Howey Test

Is Your Crypto Bounty Token a Security? A Developer's Guide to the Howey Test

1
Comments
8 min read
I Scanned 500 npm Packages for Typosquatting — 23 Were Suspicious

I Scanned 500 npm Packages for Typosquatting — 23 Were Suspicious

1
Comments
3 min read
LiteLLM Got Hacked. Here's Your AI Supply Chain Audit Checklist.

LiteLLM Got Hacked. Here's Your AI Supply Chain Audit Checklist.

Comments
5 min read
Your Terminal Remembers Every Secret You've Ever Typed

Your Terminal Remembers Every Secret You've Ever Typed

Comments 1
8 min read
I Built a Supply Chain Scanner for Python — pip Has the Same Problem as npm

I Built a Supply Chain Scanner for Python — pip Has the Same Problem as npm

Comments
3 min read
LiteLLM PyPI Compromise Is Just the Beginning — How to Audit Your Python Dependencies Right Now

LiteLLM PyPI Compromise Is Just the Beginning — How to Audit Your Python Dependencies Right Now

Comments
4 min read
API Key Security Best Practices Every Developer Should Know.

API Key Security Best Practices Every Developer Should Know.

1
Comments
4 min read
GHSA-4564-PVR2-QQ4H: OpenClaw Keychain Injection: When Secure Storage Becomes a Shell

GHSA-4564-PVR2-QQ4H: OpenClaw Keychain Injection: When Secure Storage Becomes a Shell

Comments
2 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.