DEV Community

# devsecops

Integrating security practices into the DevOps lifecycle.

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Why Cursor Keeps Generating Wildcard CORS -- And How to Fix It

Why Cursor Keeps Generating Wildcard CORS -- And How to Fix It

Comments
3 min read
Building a Zero-Trust Golang Backend (Part 3): Deploying to GKE with Strict Security Context ☸️🚀

Building a Zero-Trust Golang Backend (Part 3): Deploying to GKE with Strict Security Context ☸️🚀

Comments
2 min read
IDOR in AI-Generated Code: The Auth Bug Cursor Keeps Missing

IDOR in AI-Generated Code: The Auth Bug Cursor Keeps Missing

Comments
3 min read
Most security tools still use 20-year-old rules. That's why I built Permi.

Most security tools still use 20-year-old rules. That's why I built Permi.

Comments
1 min read
Building Friday: A Multi-Provider AI Agent That Lives in Your Terminal

Building Friday: A Multi-Provider AI Agent That Lives in Your Terminal

Comments
3 min read
When a Git Branch Name Becomes a Weapon: The Codex Command Injection That Could Steal Your GitHub Token

When a Git Branch Name Becomes a Weapon: The Codex Command Injection That Could Steal Your GitHub Token

Comments
6 min read
OWASP Top 10 for Agentic Applications 2026: What Every Claude Code User Needs to Know

OWASP Top 10 for Agentic Applications 2026: What Every Claude Code User Needs to Know

3
Comments 1
11 min read
I scanned my own Docker images. Here's what I found — and how I built the scanner.

I scanned my own Docker images. Here's what I found — and how I built the scanner.

Comments
5 min read
Governing Security in the Age of Infinite Signal – From Discovery to Control

Governing Security in the Age of Infinite Signal – From Discovery to Control

Comments
7 min read
API Security in 2026: The Attack Surface Your Pentest Is Probably Missing

API Security in 2026: The Attack Surface Your Pentest Is Probably Missing

Comments
20 min read
API Security in 2026: The Attack Surface Your Pentest Is Probably Missing

API Security in 2026: The Attack Surface Your Pentest Is Probably Missing

Comments
20 min read
Why Cursor Generates Wildcard CORS in Every Express App

Why Cursor Generates Wildcard CORS in Every Express App

Comments
3 min read
Why Cursor Keeps Hardcoding Your API Keys (And How to Stop It)

Why Cursor Keeps Hardcoding Your API Keys (And How to Stop It)

1
Comments 1
3 min read
Why Cursor Keeps Writing Wildcard CORS Into Your Express API

Why Cursor Keeps Writing Wildcard CORS Into Your Express API

Comments
3 min read
OWASP Top 10 Explained: Real-World Vulnerabilities & How to Fix Them

OWASP Top 10 Explained: Real-World Vulnerabilities & How to Fix Them

Comments
4 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.