Forem

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
I Built Cryptographic Audit Trails for AI Agents. Here Is Why.
Cover image for I Built Cryptographic Audit Trails for AI Agents. Here Is Why.

I Built Cryptographic Audit Trails for AI Agents. Here Is Why.

Comments
3 min read
We Scanned 2,640 MCP Tools. Here's Why AI Agents Need a Trust Layer.
Cover image for We Scanned 2,640 MCP Tools. Here's Why AI Agents Need a Trust Layer.

We Scanned 2,640 MCP Tools. Here's Why AI Agents Need a Trust Layer.

Comments
4 min read
5 Practical Techniques to Prevent API Key Leakage (with Claude Code Auto-Check)

5 Practical Techniques to Prevent API Key Leakage (with Claude Code Auto-Check)

1
Comments
3 min read
Review: GitHub Security Lab's Open-Source AI Vulnerability-Scanning Framework for Drupal Module and WordPress Plugin CI Pipel...
Cover image for Review: GitHub Security Lab's Open-Source AI Vulnerability-Scanning Framework for Drupal Module and WordPress Plugin CI Pipel...

Review: GitHub Security Lab's Open-Source AI Vulnerability-Scanning Framework for Drupal Module and WordPress Plugin CI Pipel...

Comments
4 min read
🔐 Why a GitHub-Based Store? — Security and Community Sharing for Local AI Agents

🔐 Why a GitHub-Based Store? — Security and Community Sharing for Local AI Agents

Comments
3 min read
SQL Injection – UNION attack, retrieving multiple values in a single column | PortSwigger Lab Note #5

SQL Injection – UNION attack, retrieving multiple values in a single column | PortSwigger Lab Note #5

5
Comments
1 min read
The IoTeX Bridge Hack: Anatomy of a $4.4M Private Key Compromise That Exposed DeFi's Weakest Link

The IoTeX Bridge Hack: Anatomy of a $4.4M Private Key Compromise That Exposed DeFi's Weakest Link

1
Comments
6 min read
I Got Sick of Getting Rugged, So I Built a Rug-Pull Detection Engine in Rust

I Got Sick of Getting Rugged, So I Built a Rug-Pull Detection Engine in Rust

2
Comments
6 min read
Why I ditched "Soft Deletes" for S3: Building a Physical Purge Workflow

Why I ditched "Soft Deletes" for S3: Building a Physical Purge Workflow

1
Comments
2 min read
I built a free dev tools site after almost leaking my staging credentials into a "popular" online JWT decoder
Cover image for I built a free dev tools site after almost leaking my staging credentials into a "popular" online JWT decoder

I built a free dev tools site after almost leaking my staging credentials into a "popular" online JWT decoder

Comments
1 min read
Authentication vs Authorization
Cover image for Authentication vs Authorization

Authentication vs Authorization

1
Comments
2 min read
1,149 Humans Tried to Social-Engineer Our AI Banker. Here's What OWASP's Agentic Framework Missed.

1,149 Humans Tried to Social-Engineer Our AI Banker. Here's What OWASP's Agentic Framework Missed.

1
Comments
8 min read
Securing ERC-4626 Vaults in Production: A Developer's Checklist After the sDOLA Donation Attack

Securing ERC-4626 Vaults in Production: A Developer's Checklist After the sDOLA Donation Attack

1
Comments
5 min read
GitGuardian MCP: Secret Scanning as a Hard Merge Gate for AI-Generated Code
Cover image for GitGuardian MCP: Secret Scanning as a Hard Merge Gate for AI-Generated Code

GitGuardian MCP: Secret Scanning as a Hard Merge Gate for AI-Generated Code

1
Comments
4 min read
Prompt Chainmail: Workflows and integration examples - part 2

Prompt Chainmail: Workflows and integration examples - part 2

1
Comments
5 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.