DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Resolve the tenant from the user, not the request

Resolve the tenant from the user, not the request

Comments
2 min read
Is your MCP server safe? One line in mcp.json, and your agent recovers from its own DROP TABLE

Is your MCP server safe? One line in mcp.json, and your agent recovers from its own DROP TABLE

Comments
3 min read
V.E.L.O.C.I.T.Y.-OS: Kimi K2.7 and the 'Safe-Room Security' Illusion (Part 1)

Self-healing OS running in CPU L3 cache

V.E.L.O.C.I.T.Y.-OS: Kimi K2.7 and the 'Safe-Room Security' Illusion (Part 1)

9
Comments 6
4 min read
Building an IAM Service with FastAPI: Refresh Token Families, TOTP MFA, and RBAC

Building an IAM Service with FastAPI: Refresh Token Families, TOTP MFA, and RBAC

Comments
5 min read
DAST false negatives vs SAST false positives: a real case

DAST false negatives vs SAST false positives: a real case

1
Comments
10 min read
Zero-Knowledge Architecture: What It Means for Your Files

Zero-Knowledge Architecture: What It Means for Your Files

Comments
3 min read
OpenClaw puts an AI agent on your messaging apps. The hard part is the trust boundary

OpenClaw puts an AI agent on your messaging apps. The hard part is the trust boundary

Comments
3 min read
Why Every CISO Needs an AIBOM in 2026 — And What Vendors Get Wrong

Why Every CISO Needs an AIBOM in 2026 — And What Vendors Get Wrong

Comments
9 min read
Why Cursor Keeps Installing Vulnerable npm Packages

Why Cursor Keeps Installing Vulnerable npm Packages

Comments
3 min read
[Open Source] Built a tool to discover and risk-score all IAM roles + OIDC trust relationships across AWS accounts

[Open Source] Built a tool to discover and risk-score all IAM roles + OIDC trust relationships across AWS accounts

1
Comments
1 min read
MII: Machine Identity Intelligence — discover and risk-score IAM roles, OIDC federations, and CI/CD tokens across AWS

MII: Machine Identity Intelligence — discover and risk-score IAM roles, OIDC federations, and CI/CD tokens across AWS

Comments
1 min read
I Built an Offline SAST Scanner — Try It on Your Code and Tell Me Where It Fails

I Built an Offline SAST Scanner — Try It on Your Code and Tell Me Where It Fails

1
Comments
4 min read
The Drift Protocol Hack: A Six-Month Social Engineering Operation

The Drift Protocol Hack: A Six-Month Social Engineering Operation

Comments
3 min read
We got scraped, so we built a free Ethereum scam API

We got scraped, so we built a free Ethereum scam API

1
Comments
6 min read
Adding Google Login to IdentityServer

Adding Google Login to IdentityServer

Comments
3 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.