DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Solana Static Analysis in 2026: Eloizer vs L3X vs Sec3 X-ray vs Solana Fender — Finding Bugs Before Deployment

Solana Static Analysis in 2026: Eloizer vs L3X vs Sec3 X-ray vs Solana Fender — Finding Bugs Before Deployment

Comments
7 min read
Your CI Pipeline Has No Identity. Here's a GitHub Action to Fix That.

Your CI Pipeline Has No Identity. Here's a GitHub Action to Fix That.

Comments
2 min read
The Gondi NFT Lending Exploit: How a Missing Ownership Check Let Attackers Drain 78 NFTs Worth $230K

The Gondi NFT Lending Exploit: How a Missing Ownership Check Let Attackers Drain 78 NFTs Worth $230K

1
Comments
5 min read
Fuzzing DeFi Lending Invariants with Medusa: How Property-Based Testing Would Have Caught the Venus Protocol Exploit

Fuzzing DeFi Lending Invariants with Medusa: How Property-Based Testing Would Have Caught the Venus Protocol Exploit

Comments
4 min read
An AI Disabled Its Own Safety Guard — So I Redesigned It

An AI Disabled Its Own Safety Guard — So I Redesigned It

1
Comments
5 min read
Don’t Lock Yourself Out of AWS: MFA Backup and IAM Best Practices.

Don’t Lock Yourself Out of AWS: MFA Backup and IAM Best Practices.

Comments
3 min read
Building a Trust Score MCP Server for Claude and Cursor

Building a Trust Score MCP Server for Claude and Cursor

Comments
3 min read
Big Companies steal your data, so I made a secure chat for you.

Big Companies steal your data, so I made a secure chat for you.

6
Comments
5 min read
Your Platform Team Needs an Agent Policy — Yesterday

Your Platform Team Needs an Agent Policy — Yesterday

Comments
5 min read
Uniswap V4 Hook Security: 8 Critical Attack Vectors Every DeFi Developer Must Audit Before Mainnet

Uniswap V4 Hook Security: 8 Critical Attack Vectors Every DeFi Developer Must Audit Before Mainnet

Comments
6 min read
Cross-site scripting – Reflected XSS | PortSwigger Lab Note #3

Cross-site scripting – Reflected XSS | PortSwigger Lab Note #3

6
Comments
2 min read
Meta OAuth: Short-Lived vs Long-Lived Tokens (and Why Your Token Expires After 1 Hour)

Meta OAuth: Short-Lived vs Long-Lived Tokens (and Why Your Token Expires After 1 Hour)

1
Comments
6 min read
ShadowStrike Phantom EDR/XDR Platform Kernel Sensor (WDK/C)

ShadowStrike Phantom EDR/XDR Platform Kernel Sensor (WDK/C)

2
Comments
2 min read
8,000 MCP Servers Are Exposed. Who's Watching What They Do?

8,000 MCP Servers Are Exposed. Who's Watching What They Do?

Comments
4 min read
HTTPX Project at Risk: How Maintainer Disengagement and Security Concerns Threaten Its Future

HTTPX Project at Risk: How Maintainer Disengagement and Security Concerns Threaten Its Future

Comments
18 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.