DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Can Copilot Fix Its Own Security Findings? Testing GitHub Agentic Autofix

Can Copilot Fix Its Own Security Findings? Testing GitHub Agentic Autofix

1
Comments
10 min read
SIP: Five Immediate Software Supply Chain Controls

SIP: Five Immediate Software Supply Chain Controls

6
Comments
10 min read
Copilot Autofix Introduced a Critical CI/CD Bug at Snowflake. Here's How to Harden GitHub Actions

Copilot Autofix Introduced a Critical CI/CD Bug at Snowflake. Here's How to Harden GitHub Actions

Comments
7 min read
Cybersecurity from Zero to Hero #1: The CIA Triad, or Why Your Bank App Keeps Logging You Out

Cybersecurity from Zero to Hero #1: The CIA Triad, or Why Your Bank App Keeps Logging You Out

Comments
4 min read
A threshold that filters CVEs is only half a design until zero has two meanings

A threshold that filters CVEs is only half a design until zero has two meanings

Comments
4 min read
SPI, I2C, UART: How To Trigger On What Matters Instead Of Drowning In Noise

SPI, I2C, UART: How To Trigger On What Matters Instead Of Drowning In Noise

2
Comments
7 min read
Remote-controlling your computer from your phone: the security traps that worry me

Remote-controlling your computer from your phone: the security traps that worry me

Comments
2 min read
Your .env File Is Not a Security Control (And Other Lies We Tell Ourselves)

Your .env File Is Not a Security Control (And Other Lies We Tell Ourselves)

1
Comments
4 min read
Run AI-Proposed Shell Commands in a systemd Probe Before You Run Them for Real

Run AI-Proposed Shell Commands in a systemd Probe Before You Run Them for Real

Comments
4 min read
The Dangerous Docker Firewall Bypass (And How to Fix It Using UFW)

The Dangerous Docker Firewall Bypass (And How to Fix It Using UFW)

Comments
4 min read
Containing the Autonomous Blast Radius: Runtime AI Safety with Docker and LLM Judges

Containing the Autonomous Blast Radius: Runtime AI Safety with Docker and LLM Judges

Comments
7 min read
MFA Enabled Is Not MFA Verified

MFA Enabled Is Not MFA Verified

Comments
4 min read
Why I don’t want AI agents executing code in someone else’s cloud

Why I don’t want AI agents executing code in someone else’s cloud

Comments
3 min read
Your Integrity Checks Are Watching the Wrong Layer

Your Integrity Checks Are Watching the Wrong Layer

Comments
13 min read
Testing That Secrets Cannot Reach Logs in Go

Testing That Secrets Cannot Reach Logs in Go

Comments
4 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.