DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
EU AI Act Compliance Will Fail Without an AI System Inventory. Here's How to Build One.

EU AI Act Compliance Will Fail Without an AI System Inventory. Here's How to Build One.

Comments
8 min read
Enterprise Blockchain in TypeScript: Real-World Case Studies, Protocol Mappings, MPC, HSM & Post-Quantum Patterns That Actually Run

Enterprise Blockchain in TypeScript: Real-World Case Studies, Protocol Mappings, MPC, HSM & Post-Quantum Patterns That Actually Run

Comments
11 min read
Blind `npm install` Execution Risks Security Vulnerabilities: Review Lockfiles to Mitigate Threats

Blind `npm install` Execution Risks Security Vulnerabilities: Review Lockfiles to Mitigate Threats

Comments
10 min read
axios Got Hacked. If You Ran npm install Yesterday, Read This Now.

axios Got Hacked. If You Ran npm install Yesterday, Read This Now.

Comments
4 min read
💎REL: oauth2 v2.0.18

💎REL: oauth2 v2.0.18

Comments
1 min read
Addressing NPM Dependency Risks: Strategies for a Secure and Robust Software Ecosystem

Addressing NPM Dependency Risks: Strategies for a Secure and Robust Software Ecosystem

Comments
8 min read
Your Agent Monitoring SDK Was the Backdoor

Your Agent Monitoring SDK Was the Backdoor

Comments
10 min read
Como o Ataque à Cadeia de Suprimentos do NPM Axios Acontece (E Como Proteger Seus Projetos de API)

Como o Ataque à Cadeia de Suprimentos do NPM Axios Acontece (E Como Proteger Seus Projetos de API)

Comments
9 min read
Axios NPM Supply Chain Angriff: API Projekte schützen

Axios NPM Supply Chain Angriff: API Projekte schützen

Comments
8 min read
Securing Python Dependencies: Balancing Practicality and Risk After Supply Chain Attacks Like Telnyx Compromise

Securing Python Dependencies: Balancing Practicality and Risk After Supply Chain Attacks Like Telnyx Compromise

Comments
10 min read
24 Hours of Chaos: Saving My Open Source Project from a Supply Chain Attack (plain-crypto-js)

24 Hours of Chaos: Saving My Open Source Project from a Supply Chain Attack (plain-crypto-js)

Comments
2 min read
Axios NPM サプライチェーン攻撃の仕組みとAPIプロジェクトの保護方法

Axios NPM サプライチェーン攻撃の仕組みとAPIプロジェクトの保護方法

Comments
3 min read
What the Claude Code source leak reveals about how it actually works (and what to do with that)

What the Claude Code source leak reveals about how it actually works (and what to do with that)

Comments
4 min read
Engineer's Guide to Surviving Global Cyber Compliance: Unpacking the OSPS Baseline

Engineer's Guide to Surviving Global Cyber Compliance: Unpacking the OSPS Baseline

Comments
3 min read
Claude Code source map leaks are a wake-up call — here's how to monitor agent vulnerabilities

Claude Code source map leaks are a wake-up call — here's how to monitor agent vulnerabilities

Comments
4 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.