close

DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Manually Proving and Documenting an IDOR (CWE-639) — A Full Walkthrough

Manually Proving and Documenting an IDOR (CWE-639) — A Full Walkthrough

Comments
2 min read
Podman publishes the same port and your firewall still holds. Even as root.

Podman publishes the same port and your firewall still holds. Even as root.

Comments
5 min read
Why Your OAuth Integration Randomly Returns invalid_grant (and How to Stop Two Workers From Racing)

Why Your OAuth Integration Randomly Returns invalid_grant (and How to Stop Two Workers From Racing)

Comments
7 min read
I Built a Leak Detector for API Keys. My Synthetic Tests Caught 8 Out of 20

I Built a Leak Detector for API Keys. My Synthetic Tests Caught 8 Out of 20

Comments
2 min read
sbx: a disposable Docker sandbox for opening untrusted repos in your own IDE

sbx: a disposable Docker sandbox for opening untrusted repos in your own IDE

1
Comments
2 min read
What does "verified" actually mean in your stack?

What does "verified" actually mean in your stack?

Comments
1 min read
qm Gives Every Employee Their Own Agent Sandbox Instead of One Shared Brain

qm Gives Every Employee Their Own Agent Sandbox Instead of One Shared Brain

Comments
4 min read
Keycloak CVE-2026-18963: Unauthenticated Password Reset Hands Over Any Account, Including Admins

Keycloak CVE-2026-18963: Unauthenticated Password Reset Hands Over Any Account, Including Admins

Comments
5 min read
Guida completa OWASP Top 10

Guida completa OWASP Top 10

Comments
5 min read
The Perimeter Moved to the Laptop: From Network, to Identity, to the Developer Endpoint

The Perimeter Moved to the Laptop: From Network, to Identity, to the Developer Endpoint

Comments
8 min read
CĂłmo solucionar el error \"Enable JavaScript and cookies to continue\"

CĂłmo solucionar el error \"Enable JavaScript and cookies to continue\"

Comments
3 min read
Pro Hacker: Turning Cybersecurity Learning Into Interactive Security Simulations

Pro Hacker: Turning Cybersecurity Learning Into Interactive Security Simulations

Comments
4 min read
AutoHttps: automatic HTTPS for ASP.NET Core with no NuGet dependencies

AutoHttps: automatic HTTPS for ASP.NET Core with no NuGet dependencies

Comments
2 min read
What MCP Doesn't Solve

What MCP Doesn't Solve

6
Comments 2
6 min read
Model uncertainty as data: designing a username-search API beyond booleans

Model uncertainty as data: designing a username-search API beyond booleans

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.