Skip to content
Navigation menu
Search
Powered by Algolia
Search
Log in
Create account
Forem
Close
#
devsec
Follow
Hide
Posts
Left menu
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
Right menu
The Repository That Tracks Everything You Ask Claude: A Story About Header Injection in Claude Code
Jonathan Santilli
Jonathan Santilli
Jonathan Santilli
Follow
Feb 4
The Repository That Tracks Everything You Ask Claude: A Story About Header Injection in Claude Code
#
claudecode
#
anthropic
#
ai
#
devsec
Comments
Add Comment
7 min read
The Repository That Steals Your API Key: A Story About Environment Overrides in Claude Code
Jonathan Santilli
Jonathan Santilli
Jonathan Santilli
Follow
Jan 30
The Repository That Steals Your API Key: A Story About Environment Overrides in Claude Code
#
claudecode
#
ai
#
vulnerability
#
devsec
Comments
Add Comment
7 min read
Reading Outside the Lines: Symlink Escape in OpenCode's File API
Jonathan Santilli
Jonathan Santilli
Jonathan Santilli
Follow
Jan 28
Reading Outside the Lines: Symlink Escape in OpenCode's File API
#
opencode
#
ai
#
devsec
#
agents
Comments
Add Comment
5 min read
The Silent Trigger: How Formatters Became Attack Vectors in OpenCode
Jonathan Santilli
Jonathan Santilli
Jonathan Santilli
Follow
Jan 23
The Silent Trigger: How Formatters Became Attack Vectors in OpenCode
#
opencode
#
ai
#
formatters
#
devsec
Comments
Add Comment
5 min read
When "Read This File" Means "Run This Code": LSP Configuration in OpenCode
Jonathan Santilli
Jonathan Santilli
Jonathan Santilli
Follow
Jan 22
When "Read This File" Means "Run This Code": LSP Configuration in OpenCode
#
opencode
#
ai
#
lsp
#
devsec
Comments
Add Comment
4 min read
Why Kubernetes Is Not a Beginner Tool
Gaurav Chile | InfraForgeLabs
Gaurav Chile | InfraForgeLabs
Gaurav Chile | InfraForgeLabs
Follow
Feb 14
Why Kubernetes Is Not a Beginner Tool
#
devops
#
devsec
#
programming
#
kubernetes
1
 reaction
Comments
Add Comment
1 min read
CI-Embedded Security
nicolas.vbgh
nicolas.vbgh
nicolas.vbgh
Follow
Feb 4
CI-Embedded Security
#
devops
#
security
#
devsec
#
cicd
Comments
Add Comment
4 min read
The repository that runs code: A story about MCP Configuration in OpenCode
Jonathan Santilli
Jonathan Santilli
Jonathan Santilli
Follow
Jan 21
The repository that runs code: A story about MCP Configuration in OpenCode
#
ai
#
mcp
#
opencode
#
devsec
Comments
1
 comment
5 min read
Catch vulnerabilities before they ship: local SonarQube setup (Part 2)
Vardan Matevosian
Vardan Matevosian
Vardan Matevosian
Follow
Dec 9 '25
Catch vulnerabilities before they ship: local SonarQube setup (Part 2)
#
security
#
sast
#
devsec
#
sonarqube
1
 reaction
Comments
Add Comment
8 min read
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
We're a blogging-forward open source social network where we learn from one another
Log in
Create account