Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Nobody Tests AI Agent Ecosystems. So I Built a Tool That Does.

Nobody Tests AI Agent Ecosystems. So I Built a Tool That Does.

Comments
3 min read
Why .env files are a security disaster (and what we do instead)
Cover image for Why .env files are a security disaster (and what we do instead)

Why .env files are a security disaster (and what we do instead)

1
Comments
4 min read
I Found 5 Security Bugs in My OAuth2 Provider on My First Try (With an MCP Security Tool)

I Found 5 Security Bugs in My OAuth2 Provider on My First Try (With an MCP Security Tool)

2
Comments 1
6 min read
Why Nobody Is Testing AI Agent Security at Scale — And How Swarm Simulation Could Change That

Why Nobody Is Testing AI Agent Security at Scale — And How Swarm Simulation Could Change That

Comments
3 min read
The Axios Attack Proved npm audit Is Broken. Here's What Would Have Caught It

The Axios Attack Proved npm audit Is Broken. Here's What Would Have Caught It

1
Comments
6 min read
Fortress in a Box: Kubernetes Security for the Organizations That Can't Afford It
Cover image for Fortress in a Box: Kubernetes Security for the Organizations That Can't Afford It

Fortress in a Box: Kubernetes Security for the Organizations That Can't Afford It

2
Comments
4 min read
The Documentation Attack Surface: How npm Libraries Teach Insecure Patterns

The Documentation Attack Surface: How npm Libraries Teach Insecure Patterns

Comments
4 min read
Why your agent RBAC is broken (and how to stop webchat from getting exec)

Why your agent RBAC is broken (and how to stop webchat from getting exec)

Comments
4 min read
7 CVEs in 48 Hours: How PraisonAI Got Completely Owned — And What Every Agent Framework Should Learn

7 CVEs in 48 Hours: How PraisonAI Got Completely Owned — And What Every Agent Framework Should Learn

Comments
4 min read
The IDOR Bug Cursor Keeps Writing Into Your API Routes
Cover image for The IDOR Bug Cursor Keeps Writing Into Your API Routes

The IDOR Bug Cursor Keeps Writing Into Your API Routes

Comments
2 min read
How to Remove Sensitive Data from Your Git History (For Real This Time)
Cover image for How to Remove Sensitive Data from Your Git History (For Real This Time)

How to Remove Sensitive Data from Your Git History (For Real This Time)

1
Comments
5 min read
PassForge: I Built a Password Workstation Because One Slider Wasn't Enough

PassForge: I Built a Password Workstation Because One Slider Wasn't Enough

Comments
5 min read
Stop Shipping Vulnerabilities by Default: An Intro to Docker Hardened Images

Stop Shipping Vulnerabilities by Default: An Intro to Docker Hardened Images

32
Comments 1
4 min read
Building Privacy-Preserving Identity Systems with DIDs on Midnight
Cover image for Building Privacy-Preserving Identity Systems with DIDs on Midnight

Building Privacy-Preserving Identity Systems with DIDs on Midnight

1
Comments 2
14 min read
Designing Secure Authentication with Access & Refresh Tokens
Cover image for Designing Secure Authentication with Access & Refresh Tokens

Designing Secure Authentication with Access & Refresh Tokens

Comments
2 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.