DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
TShark - TryHackMe

TShark - TryHackMe

7
Comments
6 min read
Restricting access to certain files in our Laravel app

Restricting access to certain files in our Laravel app

16
Comments
3 min read
picoCTF 2021 -Easy Peasy writeup-

picoCTF 2021 -Easy Peasy writeup-

13
Comments
2 min read
Blockchain security analysis layer by layer

Blockchain security analysis layer by layer

15
Comments
13 min read
Brave - The Browser that pays Crypto

Brave - The Browser that pays Crypto

5
Comments 2
9 min read
Automated Pen Testing With ZAP CLI

Automated Pen Testing With ZAP CLI

4
Comments
7 min read
Manually Exploiting MS17-010 (python2 to python3)

Manually Exploiting MS17-010 (python2 to python3)

3
Comments
2 min read
Working with Webhooks: Security

Working with Webhooks: Security

5
Comments
6 min read
The ultimate guide to secure cookies with web.config in .NET

The ultimate guide to secure cookies with web.config in .NET

12
Comments 1
5 min read
Easily configure SSL/TLS Connection

Easily configure SSL/TLS Connection

3
Comments 2
4 min read
From Zero to Hero (▀̿Ĺ̯▀̿ ̿) in Authentication | Part 1

From Zero to Hero (▀̿Ĺ̯▀̿ ̿) in Authentication | Part 1

483
Comments 16
3 min read
All possible loopholes

All possible loopholes

2
Comments
2 min read
Validating the PE Signature (My AV Flagged me) [Windows PE Internals]

Validating the PE Signature (My AV Flagged me) [Windows PE Internals]

6
Comments
3 min read
Git Signature Operations via HashiCorp Vault

Git Signature Operations via HashiCorp Vault

1
Comments
1 min read
What I learned today?: Caesar cipher

What I learned today?: Caesar cipher

6
Comments
2 min read
CloudFormation Example for an IAM User with Rotating Credentials

CloudFormation Example for an IAM User with Rotating Credentials

5
Comments
2 min read
How is SAWO better than Single Sign On?

How is SAWO better than Single Sign On?

4
Comments 1
4 min read
ångstromCTF Exclusive Cipher

ångstromCTF Exclusive Cipher

2
Comments
3 min read
Diving into Azure Management Groups

Diving into Azure Management Groups

8
Comments
3 min read
Stackoverflow [Android Internals CTF Ex7]

Stackoverflow [Android Internals CTF Ex7]

5
Comments
3 min read
Using GPG Keys to sign Git Commits - Part 3

Using GPG Keys to sign Git Commits - Part 3

6
Comments
7 min read
Using GPG Keys to sign Git Commits - Part 1

Using GPG Keys to sign Git Commits - Part 1

7
Comments
8 min read
Optimise your site - Addressing recommendations from securityheaders.com

Optimise your site - Addressing recommendations from securityheaders.com

5
Comments
8 min read
Using GPG Keys to sign Git Commits - Part 4

Using GPG Keys to sign Git Commits - Part 4

5
Comments
5 min read
Using GPG Keys to sign Git Commits - Part 2

Using GPG Keys to sign Git Commits - Part 2

4
Comments
14 min read
How to Manage Multiple SSH Key Pairs

How to Manage Multiple SSH Key Pairs

385
Comments 22
4 min read
Introdução do escaneamento de porta com a ferramenta Nmap

Introdução do escaneamento de porta com a ferramenta Nmap

8
Comments
6 min read
Cheat Sheet: Mapping out a Powerful File Handling System

Cheat Sheet: Mapping out a Powerful File Handling System

7
Comments
9 min read
29 - The Sidecar and Ambassador Patterns

29 - The Sidecar and Ambassador Patterns

3
Comments
1 min read
Fetch Metadata and Isolation Policies

Fetch Metadata and Isolation Policies

6
Comments
8 min read
Apps Protection and Selective Wipe

Apps Protection and Selective Wipe

1
Comments 1
2 min read
Custom interface for Account Factory in AWS Control Tower

Custom interface for Account Factory in AWS Control Tower

5
Comments
1 min read
JSON web tokens are NOT meant for authenticating the same user repeatedly: Use session tokens instead

JSON web tokens are NOT meant for authenticating the same user repeatedly: Use session tokens instead

451
Comments 53
7 min read
Passwordless in 10 minutes - idemeum JavaScript SDK

Passwordless in 10 minutes - idemeum JavaScript SDK

6
Comments 2
4 min read
Where did these mysterious PrismJS npm versions come from?

Where did these mysterious PrismJS npm versions come from?

4
Comments
5 min read
Azure AD Privileged Identity Management

Azure AD Privileged Identity Management

3
Comments
2 min read
Off by One [Android Internals CTF Ex8]

Off by One [Android Internals CTF Ex8]

4
Comments
5 min read
picoCTF 2021 -Mind your Ps and Qs writeup-

picoCTF 2021 -Mind your Ps and Qs writeup-

2
Comments
2 min read
Static Code Analyses - Checkov, Terraform and Azure DevOps

Static Code Analyses - Checkov, Terraform and Azure DevOps

8
Comments
5 min read
How to set up SSH keys and connect them to GitHub

How to set up SSH keys and connect them to GitHub

9
Comments 2
4 min read
picoCTF 2021 -Mod 26 writeup-

picoCTF 2021 -Mod 26 writeup-

2
Comments
1 min read
From Zero to Hero (▀̿Ĺ̯▀̿ ̿) in Authentication | Part 2

From Zero to Hero (▀̿Ĺ̯▀̿ ̿) in Authentication | Part 2

110
Comments 4
2 min read
Developer Expectation vs Reality 00:43

Developer Expectation vs Reality

10
Comments 1
1 min read
Dissecting the PE Header [Windows PE Internals]

Dissecting the PE Header [Windows PE Internals]

7
Comments
4 min read
Implementing Two-factor Authentication with Flask, PyOTP, and Fauna

Implementing Two-factor Authentication with Flask, PyOTP, and Fauna

22
Comments 2
15 min read
Security news weekly round-up - 23rd April 2021

Security news weekly round-up - 23rd April 2021

8
Comments
4 min read
Secure APIs using Node.js, Azure AD, Cosmos DB and the Azure SDKs

Secure APIs using Node.js, Azure AD, Cosmos DB and the Azure SDKs

14
Comments 5
8 min read
SSH Key Best Practices

SSH Key Best Practices

25
Comments
2 min read
Protecting API keys in Flutter

Protecting API keys in Flutter

17
Comments 8
2 min read
The Developer’s Guide to Relationship-based Access Control

The Developer’s Guide to Relationship-based Access Control

9
Comments 1
6 min read
Easy Steps to Create a Blazor Server-Side App with Authentication

Easy Steps to Create a Blazor Server-Side App with Authentication

7
Comments 1
6 min read
Follow up on "Never leave your email address raw in the mailto link!"

Follow up on "Never leave your email address raw in the mailto link!"

2
Comments
1 min read
Advice to an early-career DevOps engineer

Advice to an early-career DevOps engineer

4
Comments
4 min read
Authorization Academy: Technical guides for building application authorization

Authorization Academy: Technical guides for building application authorization

1
Comments
1 min read
The Twitter Verified Fad is Old News. Time to get Github Verified ✅

The Twitter Verified Fad is Old News. Time to get Github Verified ✅

12
Comments
4 min read
OOP: Secrets injection with delegates

OOP: Secrets injection with delegates

5
Comments
2 min read
Automated Pen Testing With Zed Attack Proxy

Automated Pen Testing With Zed Attack Proxy

11
Comments
8 min read
Docker in making the world more unique in terms of the development

Docker in making the world more unique in terms of the development

9
Comments 6
7 min read
Como usar variáveis de ambiente sem biblioteca em React

Como usar variáveis de ambiente sem biblioteca em React

16
Comments 4
3 min read
The vulnerability of insecurely deleting password manager exports

The vulnerability of insecurely deleting password manager exports

7
Comments
2 min read
loading...