DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Stop Uploading Sensitive PDFs: How I Built a Client-Side Redactor with Next.js

Stop Uploading Sensitive PDFs: How I Built a Client-Side Redactor with Next.js

Comments
2 min read
CVE-2025-59471: Next.js Image Optimizer: The 4GB Hello World

CVE-2025-59471: Next.js Image Optimizer: The 4GB Hello World

Comments
2 min read
What is Governance for AI and AI Agents?

What is Governance for AI and AI Agents?

Comments
5 min read
Your IDE is an Attack Vector

Your IDE is an Attack Vector

51
Comments 51
5 min read
The Invisible Perimeter: Hardening LLM Flows in the Age of Autonomous Exploits

The Invisible Perimeter: Hardening LLM Flows in the Age of Autonomous Exploits

Comments
7 min read
Adding 2FA to OAuth Logins in Next.js 16 with Better Auth

Adding 2FA to OAuth Logins in Next.js 16 with Better Auth

Comments
4 min read
Riding the Hype: Security Audit of AI Agent Clawdbot

Riding the Hype: Security Audit of AI Agent Clawdbot

1
Comments 2
9 min read
CVE-2024-7721: CVE-2024-7721: 'MemFray' - The Stack Overflow That Broke the 'Secure' Gateway

CVE-2024-7721: CVE-2024-7721: 'MemFray' - The Stack Overflow That Broke the 'Secure' Gateway

Comments
2 min read
We Scanned 8 Popular MCP Servers — Here's What We Found

We Scanned 8 Popular MCP Servers — Here's What We Found

3
Comments 2
5 min read
The Rise of Fake Employees: How Hackers Infiltrate Companies Through Hiring

The Rise of Fake Employees: How Hackers Infiltrate Companies Through Hiring

Comments
7 min read
Passkeys in Production: What “Passwordless” Really Means for Engineers

Passkeys in Production: What “Passwordless” Really Means for Engineers

Comments
5 min read
CVE-2025-69211: The Invisible Path: Bypassing NestJS Middleware with URL Encoding

CVE-2025-69211: The Invisible Path: Bypassing NestJS Middleware with URL Encoding

Comments
2 min read
CVE-2025-29914: The Double-Slash Deception: Bypassing Coraza WAF with RFC Compliance

CVE-2025-29914: The Double-Slash Deception: Bypassing Coraza WAF with RFC Compliance

Comments
2 min read
CVE-2026-24490: MobSF Stored XSS: When the Scanner Becomes the Target

CVE-2026-24490: MobSF Stored XSS: When the Scanner Becomes the Target

Comments
2 min read
Clawdbot/Moltbot security issues.

Clawdbot/Moltbot security issues.

Comments 1
1 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.