[go: up one dir, main page]

DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
The escape hatch that turned out to be french doors

The escape hatch that turned out to be french doors

Comments
7 min read
Permission Filters and pgvector: Why Your Most Restricted Users Get the Fewest Answers

Permission Filters and pgvector: Why Your Most Restricted Users Get the Fewest Answers

Comments
7 min read
Elementor 4.3.0 and 4.3.1: CSRF Enables Administrator Account Creation via a Flawed REST Route Check

Elementor 4.3.0 and 4.3.1: CSRF Enables Administrator Account Creation via a Flawed REST Route Check

1
Comments
5 min read
TDengine CVE-2026-42542: Unauthenticated Integer Underflow Crashes taosd with a Single Packet

TDengine CVE-2026-42542: Unauthenticated Integer Underflow Crashes taosd with a Single Packet

1
Comments
6 min read
File Change Notification Side Channel: Estimating Keystroke Timing and Browsing Activity on Linux, Android, and Windows

File Change Notification Side Channel: Estimating Keystroke Timing and Browsing Activity on Linux, Android, and Windows

1
Comments
7 min read
MemTensor MemOS Supply Chain Attack: sckit Triggered by Python Imports and OpenClaw Runtime Hooks

MemTensor MemOS Supply Chain Attack: sckit Triggered by Python Imports and OpenClaw Runtime Hooks

1
Comments
6 min read
AI 에이전트가 URL 스캔 서비스를 악용한다면 1인 개발자가 해야 할 일

AI 에이전트가 URL 스캔 서비스를 악용한다면 1인 개발자가 해야 할 일

Comments
1 min read
SalesBleed: Zero-Click DNS Data Exfiltration from Agentforce Through Indirect Prompt Injection

SalesBleed: Zero-Click DNS Data Exfiltration from Agentforce Through Indirect Prompt Injection

1
Comments
5 min read
When AI-generated code outruns the reader, the fix is tooling, not a stronger reviewer

When AI-generated code outruns the reader, the fix is tooling, not a stronger reviewer

Comments
5 min read
Your security policy is a PDF. Your AI agent can't read PDFs.

Your security policy is a PDF. Your AI agent can't read PDFs.

Comments
2 min read
A verified beacon can still give you the wrong number

A verified beacon can still give you the wrong number

Comments
2 min read
I attacked my own AI agent before someone else did. Here's what I found.

I attacked my own AI agent before someone else did. Here's what I found.

Comments
2 min read
JFrog Artifactory CVE-2026-82329: The Default Join Key as an Authentication Bypass

JFrog Artifactory CVE-2026-82329: The Default Join Key as an Authentication Bypass

Comments
3 min read
How I store users' exchange API keys (and what I got wrong the first time)

How I store users' exchange API keys (and what I got wrong the first time)

Comments
3 min read
What breaks when AI apps go live

What breaks when AI apps go live

Comments
6 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.