DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
I Got the proxy.ts Matcher Wrong for Three Projects Before I Understood Why

Security risks in the middleware to proxy shift

I Got the proxy.ts Matcher Wrong for Three Projects Before I Understood Why

11
Comments 4
9 min read
MCP Security Crisis: Two Open-Source Frameworks Solving the Agent Security Problem

MCP Security Crisis: Two Open-Source Frameworks Solving the Agent Security Problem

1
Comments
3 min read
Production RBAC patterns for Go and Node startups

Production RBAC patterns for Go and Node startups

Comments
10 min read
Startup Security Guide & LLM CISO

Startup Security Guide & LLM CISO

1
Comments
11 min read
CSRF: Why Double-Submit Cookie Falls Short for Financial-Grade Security

CSRF: Why Double-Submit Cookie Falls Short for Financial-Grade Security

Comments
4 min read
Your package-lock.json diff is unreadable. That's a supply-chain problem.

Your package-lock.json diff is unreadable. That's a supply-chain problem.

Comments
3 min read
How I Detected Merlin QUIC C2 Traffic Using Entropy and Z-Scores (490K Packets, 0% False Positives)

How I Detected Merlin QUIC C2 Traffic Using Entropy and Z-Scores (490K Packets, 0% False Positives)

Comments
10 min read
Building a Multi-Tenant API Key Management Platform with Ory Talos: A Real-World Use Case

Building a Multi-Tenant API Key Management Platform with Ory Talos: A Real-World Use Case

Comments
10 min read
Headless Browser Detection in 2026: What Still Trips Up Playwright

Headless Browser Detection in 2026: What Still Trips Up Playwright

1
Comments
9 min read
A password and a PIN aren't multifactor: the Security+ authentication trap

A password and a PIN aren't multifactor: the Security+ authentication trap

Comments
3 min read
DevSecOps: Integrating Security into Your CI/CD Pipeline

DevSecOps: Integrating Security into Your CI/CD Pipeline

Comments
8 min read
The five-minute security pass every freelance web project needs before delivery

The five-minute security pass every freelance web project needs before delivery

Comments
3 min read
I pointed capgate at Damn Vulnerable MCP. Here's what it caught — and what it couldn't.

I pointed capgate at Damn Vulnerable MCP. Here's what it caught — and what it couldn't.

1
Comments
8 min read
The Return to Tangibility The Return to Tangibility (2039–2040): Dilithium Signature Collisions and the Rebirth of the Physical Economy

The Return to Tangibility The Return to Tangibility (2039–2040): Dilithium Signature Collisions and the Rebirth of the Physical Economy

Comments
9 min read
AI Jailbreaks Explained: Prompt Injection, Risks, and Node.js Guardrails

AI Jailbreaks Explained: Prompt Injection, Risks, and Node.js Guardrails

Comments
2 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.