DEV Community

# devsecops

Integrating security practices into the DevOps lifecycle.

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
I Scanned a Vulnerable Kubernetes Cluster with 9 Engines — The AI Filter Caught Everything

I Scanned a Vulnerable Kubernetes Cluster with 9 Engines — The AI Filter Caught Everything

6
Comments
1 min read
Your GitHub Actions Logs Are Leaking LLM Keys and Your SIEM Isn't Catching It

Your GitHub Actions Logs Are Leaking LLM Keys and Your SIEM Isn't Catching It

Comments
3 min read
Embracing Zero Trust Security Architecture: A Game-Changer for DevOps and AI Engineers

Embracing Zero Trust Security Architecture: A Game-Changer for DevOps and AI Engineers

Comments
2 min read
Building a Secure Future with Zero Trust Security Architecture

Building a Secure Future with Zero Trust Security Architecture

Comments
2 min read
The real attack surface for AI coding agents is the config file

The real attack surface for AI coding agents is the config file

Comments
4 min read
Why Your EOL Risk Score Is the Most Important Number in Your Security Stack

Why Your EOL Risk Score Is the Most Important Number in Your Security Stack

Comments
7 min read
Why your vulnerability dashboard is lying to you (and how to fix it)

Why your vulnerability dashboard is lying to you (and how to fix it)

Comments
3 min read
Building Agentra, An Enterprise AI Engineering Control Plane for Secure Coding Agents

Building Agentra, An Enterprise AI Engineering Control Plane for Secure Coding Agents

Comments
3 min read
NemoClaw for the Enterprise: Policy Engineering (Part 4)

NemoClaw for the Enterprise: Policy Engineering (Part 4)

Comments
10 min read
Automate LLM Red Team Campaigns with PyRIT

Automate LLM Red Team Campaigns with PyRIT

Comments
4 min read
Audited a Popular Python Automation Project. The Biggest Risks Weren't What I Expected.

Audited a Popular Python Automation Project. The Biggest Risks Weren't What I Expected.

Comments
1 min read
AI Agents Security for Developers: Don't Let Your Agents Become a Liability

AI Agents Security for Developers: Don't Let Your Agents Become a Liability

1
Comments
9 min read
How We Got a CISA GitHub Leak Taken Down in Under a Day

How We Got a CISA GitHub Leak Taken Down in Under a Day

Comments
2 min read
When Every PR Is a Rubber Stamp: What Automated Gates Catch That Exhausted Reviewers Miss

When Every PR Is a Rubber Stamp: What Automated Gates Catch That Exhausted Reviewers Miss

Comments
8 min read
🔐 SAST vs DAST: Complete Guide to Application Security Testing in DevSecOps

🔐 SAST vs DAST: Complete Guide to Application Security Testing in DevSecOps

Comments
2 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.