Forem

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
[EP.02] Session Hijacking — The XSS Attack That Steals Your Account
Cover image for [EP.02] Session Hijacking — The XSS Attack That Steals Your Account

[EP.02] Session Hijacking — The XSS Attack That Steals Your Account

7
Comments 2
1 min read
Το Ταξίδι του JWT Όταν η Εμπιστοσύνη Γίνεται Token

Το Ταξίδι του JWT Όταν η Εμπιστοσύνη Γίνεται Token

Comments
1 min read
Securing Drupal Architectures at Scale: The 24-Hour SLA
Cover image for Securing Drupal Architectures at Scale: The 24-Hour SLA

Securing Drupal Architectures at Scale: The 24-Hour SLA

1
Comments
2 min read
Fragile Constraints: What Happens When AI Makes Rewriting Free

Fragile Constraints: What Happens When AI Makes Rewriting Free

1
Comments
7 min read
How to Evaluate AI Model Safety Before Deploying to Production
Cover image for How to Evaluate AI Model Safety Before Deploying to Production

How to Evaluate AI Model Safety Before Deploying to Production

5
Comments 8
4 min read
Okta Single Sign-On (SSO) Setup: A Step-by-Step Guide

Okta Single Sign-On (SSO) Setup: A Step-by-Step Guide

1
Comments
11 min read
Using LLMs to do security analysis at the git diff level — what works, what doesn't, and why structured output matters
Cover image for Using LLMs to do security analysis at the git diff level — what works, what doesn't, and why structured output matters

Using LLMs to do security analysis at the git diff level — what works, what doesn't, and why structured output matters

4
Comments
4 min read
Why Do SSL/TLS Certificate Lifetimes Keep Getting Shorter?: Everything You Need to Know for the 47-Day Era
Cover image for Why Do SSL/TLS Certificate Lifetimes Keep Getting Shorter?: Everything You Need to Know for the 47-Day Era

Why Do SSL/TLS Certificate Lifetimes Keep Getting Shorter?: Everything You Need to Know for the 47-Day Era

1
Comments 1
13 min read
Linxr | Part 2 — Shipping QEMU in an APK

Linxr | Part 2 — Shipping QEMU in an APK

1
Comments
3 min read
Bringing Your Own Data into Microsoft 365 Copilot (Without Breaking Security)

Bringing Your Own Data into Microsoft 365 Copilot (Without Breaking Security)

Comments
7 min read
I scanned my own Docker images. Here's what I found — and how I built the scanner.

I scanned my own Docker images. Here's what I found — and how I built the scanner.

2
Comments 1
5 min read
RAG Security 101: Protecting Your Retrieval-Augmented Generation Pipeline

RAG Security 101: Protecting Your Retrieval-Augmented Generation Pipeline

1
Comments
4 min read
The OpenAPI Initiative just merged our new extension called x-agent-trust into its official extensions registry for AI Agents

The OpenAPI Initiative just merged our new extension called x-agent-trust into its official extensions registry for AI Agents

Comments
3 min read
Review: Cloudflare Endpoint-to-Prompt Data Security Guardrails for Drupal and WordPress AI Coding Workflows
Cover image for Review: Cloudflare Endpoint-to-Prompt Data Security Guardrails for Drupal and WordPress AI Coding Workflows

Review: Cloudflare Endpoint-to-Prompt Data Security Guardrails for Drupal and WordPress AI Coding Workflows

Comments
3 min read
Two reports this week should worry anyone running AI agents

Two reports this week should worry anyone running AI agents

1
Comments
3 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.