close

DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
I shipped 35 bugs in my AI chatbot. The scariest one was on the output side.

Treating model output as untrusted input

I shipped 35 bugs in my AI chatbot. The scariest one was on the output side.

5
Comments 6
5 min read
Auditing Kubernetes Manifests With AI: A Practical Workflow

Auditing Kubernetes Manifests With AI: A Practical Workflow

1
Comments
4 min read
I built a Terraform security scanner that lives inside GitHub PRs

I built a Terraform security scanner that lives inside GitHub PRs

Comments
1 min read
Concurrent Login Security: How to Check Whether Multiple Sessions Are Allowed

Concurrent Login Security: How to Check Whether Multiple Sessions Are Allowed

Comments
4 min read
What happens when your OpenRouter key gets stolen? Nothing. Then you move on.

What happens when your OpenRouter key gets stolen? Nothing. Then you move on.

Comments 1
2 min read
Building Correct Payment Infrastructure: Webhooks, Reconciliation, and Records

Building Correct Payment Infrastructure: Webhooks, Reconciliation, and Records

Comments
4 min read
Harden SSH on Linux with Fail2ban + nftables (A Practical, Auditable Setup)

Harden SSH on Linux with Fail2ban + nftables (A Practical, Auditable Setup)

Comments
3 min read
Your .env file is probably already in your Git history. The 15-minute audit (and the 5 habits that stop new leaks for good).

Your .env file is probably already in your Git history. The 15-minute audit (and the 5 habits that stop new leaks for good).

Comments
9 min read
How I got a threat-classification AI running on-agent in under 8ms — no GPU, no cloud

How I got a threat-classification AI running on-agent in under 8ms — no GPU, no cloud

Comments
7 min read
I built a JS/TS runtime in Rust where nothing runs without your permission

I built a JS/TS runtime in Rust where nothing runs without your permission

Comments
4 min read
I built a JS/TS runtime in Rust where nothing runs without your permission

I built a JS/TS runtime in Rust where nothing runs without your permission

Comments
3 min read
The contract is clean - for now: catching crypto scams that survive launch-time checks

The contract is clean - for now: catching crypto scams that survive launch-time checks

1
Comments
4 min read
What Is Shadow AI, and Why It's a Real Security Problem

What Is Shadow AI, and Why It's a Real Security Problem

Comments
6 min read
LiteLLM Vulnerability Chain Enables Full AI Gateway Takeover from Default Account

LiteLLM Vulnerability Chain Enables Full AI Gateway Takeover from Default Account

Comments
5 min read
Supabase Authentication & Authorization Patterns

Supabase Authentication & Authorization Patterns

Comments
10 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.