Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Case Study: How a Scam Checker Prevented a Large-Scale Fraud Attempt
Cover image for Case Study: How a Scam Checker Prevented a Large-Scale Fraud Attempt

Case Study: How a Scam Checker Prevented a Large-Scale Fraud Attempt

Comments
7 min read
State Management + Security: Why Sensitive Data Needs a Runtime, Not Just State
Cover image for State Management + Security: Why Sensitive Data Needs a Runtime, Not Just State

State Management + Security: Why Sensitive Data Needs a Runtime, Not Just State

Comments
5 min read
Vibe Coding Will Get Your API Keys Stolen — .env and Keychain Won't Save You

Vibe Coding Will Get Your API Keys Stolen — .env and Keychain Won't Save You

Comments
3 min read
Stop Treating Your Code Security Like a “Check Engine” Light (or part #2 of what we can do with Bob even if we’re not coders…)

Stop Treating Your Code Security Like a “Check Engine” Light (or part #2 of what we can do with Bob even if we’re not coders…)

Comments
4 min read
Fuzz testing found bugs in our API that unit tests never would

Fuzz testing found bugs in our API that unit tests never would

Comments
7 min read
l

l

Comments 1
1 min read
Anthropic Just Did Something Unprecedented: They Hid Their Best Security Model

Anthropic Just Did Something Unprecedented: They Hid Their Best Security Model

Comments
2 min read
Stop storing your GitHub App private key in GitHub Secrets

Stop storing your GitHub App private key in GitHub Secrets

1
Comments
7 min read
Private keys and elliptic curves: a deep-dive for people who don't like math
Cover image for Private keys and elliptic curves: a deep-dive for people who don't like math

Private keys and elliptic curves: a deep-dive for people who don't like math

Comments
7 min read
Modernize Auth Without Changing Your Firebase Sessions
Cover image for Modernize Auth Without Changing Your Firebase Sessions

Modernize Auth Without Changing Your Firebase Sessions

10
Comments
6 min read
GitHub Employee's Unsolicited Pull Request Raises Legitimacy Concerns: Communication Breakdown Leaves User Unresolved.

GitHub Employee's Unsolicited Pull Request Raises Legitimacy Concerns: Communication Breakdown Leaves User Unresolved.

Comments
13 min read
Puppet Core 8.18.0 is out: macOS 15 support and key security updates
Cover image for Puppet Core 8.18.0 is out: macOS 15 support and key security updates

Puppet Core 8.18.0 is out: macOS 15 support and key security updates

Comments
2 min read
Cursor MCP Proxy Setup Guide: Add Budget Controls and Audit Trails to Your Tools

Cursor MCP Proxy Setup Guide: Add Budget Controls and Audit Trails to Your Tools

1
Comments
5 min read
How Access Control Mistakes Led to $1.4B in Losses

How Access Control Mistakes Led to $1.4B in Losses

Comments
2 min read
Why Cursor Keeps Hardcoding Your API Keys (And How to Stop It)
Cover image for Why Cursor Keeps Hardcoding Your API Keys (And How to Stop It)

Why Cursor Keeps Hardcoding Your API Keys (And How to Stop It)

1
Comments 1
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.