DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
A clone of our VS Code extension appeared on OpenVSX five days before we open-sourced the repo. It has 5,090 downloads and is using our GitHub OAuth app.

A clone of our VS Code extension appeared on OpenVSX five days before we open-sourced the repo. It has 5,090 downloads and is using our GitHub OAuth app.

1
Comments
8 min read
OpenAI Just Released a Privacy Filter. Here's What It Can't Do.

OpenAI Just Released a Privacy Filter. Here's What It Can't Do.

1
Comments
5 min read
Why Single-Layer LLM Guardrails Fail: A Dual-Detection Pattern on AWS Bedrock

Why Single-Layer LLM Guardrails Fail: A Dual-Detection Pattern on AWS Bedrock

1
Comments
4 min read
Photo Confirmation Should Not Exist in Every Action

Photo Confirmation Should Not Exist in Every Action

Comments
3 min read
Looking for beta testers – free API abuse detection tool for early-stage SaaS startups

Looking for beta testers – free API abuse detection tool for early-stage SaaS startups

Comments
1 min read
An agent called my payment API 50,000 times in 90 seconds. Here's what broke.

An agent called my payment API 50,000 times in 90 seconds. Here's what broke.

Comments
3 min read
An agent called my payment API 50,000 times in 90 seconds. Here's what broke.

An agent called my payment API 50,000 times in 90 seconds. Here's what broke.

Comments
4 min read
From LOW to CRITICAL: How a 5-Step Vulnerability Chain Goes Undetected by Flat Scanners

From LOW to CRITICAL: How a 5-Step Vulnerability Chain Goes Undetected by Flat Scanners

Comments
3 min read
Three things my Claude Code memory OSS was quietly getting wrong (KIOKU v0.4.0)

Three things my Claude Code memory OSS was quietly getting wrong (KIOKU v0.4.0)

Comments
9 min read
Vercel got hacked because an employee clicked 'Allow' on an OAuth prompt. We all do this.

Vercel got hacked because an employee clicked 'Allow' on an OAuth prompt. We all do this.

3
Comments
3 min read
Invited Talk: BLERP: BLE Re-Pairing Attacks and Defenses

Invited Talk: BLERP: BLE Re-Pairing Attacks and Defenses

Comments
1 min read
How to Safely Allow Inline Scripts Without Breaking Security with CSP Nonce

How to Safely Allow Inline Scripts Without Breaking Security with CSP Nonce

Comments
4 min read
Turn Any IP Address into Actionable Security Signals in JavaScript

Turn Any IP Address into Actionable Security Signals in JavaScript

3
Comments
3 min read
CNAPP won't fix your IAM mess

CNAPP won't fix your IAM mess

Comments
2 min read
Rape Academy: a threat-intel breakdown of the CNN Telegram "Zzz" investigation

Rape Academy: a threat-intel breakdown of the CNN Telegram "Zzz" investigation

Comments
2 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.