Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Using Sitevett, we scanned 100 agency websites. Here's what they miss.

Using Sitevett, we scanned 100 agency websites. Here's what they miss.

Comments 1
4 min read
IPI-Scanner: Detecting Indirect Prompt Injection Attacks Before Your LLM Reads Them
Cover image for IPI-Scanner: Detecting Indirect Prompt Injection Attacks Before Your LLM Reads Them

IPI-Scanner: Detecting Indirect Prompt Injection Attacks Before Your LLM Reads Them

Comments 1
3 min read
Lazarus Group's 19-Day A/B Test: How North Korean APT Pivoted from Airdrops to Fake CVEs to Dream Jobs
Cover image for Lazarus Group's 19-Day A/B Test: How North Korean APT Pivoted from Airdrops to Fake CVEs to Dream Jobs

Lazarus Group's 19-Day A/B Test: How North Korean APT Pivoted from Airdrops to Fake CVEs to Dream Jobs

18
Comments 5
8 min read
Subdomain Enumeration in 2026: Tools, Techniques, and What Actually Works

Subdomain Enumeration in 2026: Tools, Techniques, and What Actually Works

Comments
8 min read
MCP-I Just Landed at DIF. Here's What It Means for Agent Identity.

MCP-I Just Landed at DIF. Here's What It Means for Agent Identity.

1
Comments
4 min read
How to Debug JWT Tokens Without Sending Them to a Server

How to Debug JWT Tokens Without Sending Them to a Server

1
Comments
2 min read
How to Fix Missing HSTS Header (Step-by-Step)
Cover image for How to Fix Missing HSTS Header (Step-by-Step)

How to Fix Missing HSTS Header (Step-by-Step)

Comments
7 min read
Re-imagine DevSecOps with AWS - CD applied to Authorization with IAM Identity Center and AWS IAM Access Analyzer
Cover image for Re-imagine DevSecOps with AWS - CD applied to Authorization with IAM Identity Center and AWS IAM Access Analyzer

Re-imagine DevSecOps with AWS - CD applied to Authorization with IAM Identity Center and AWS IAM Access Analyzer

Comments
9 min read
CVE-2026-30241: CVE-2026-30241: Missing Query Depth Validation in Mercurius GraphQL Subscriptions

CVE-2026-30241: CVE-2026-30241: Missing Query Depth Validation in Mercurius GraphQL Subscriptions

1
Comments
2 min read
How Apache Polaris Vends Credentials: Securing Data Access Without Sharing Keys

How Apache Polaris Vends Credentials: Securing Data Access Without Sharing Keys

Comments 1
4 min read
I Spent 2 Sessions Auditing zkVerify's Substrate Code — Here's What I Found (And Didn't Find)

I Spent 2 Sessions Auditing zkVerify's Substrate Code — Here's What I Found (And Didn't Find)

1
Comments
6 min read
Inside Anthropic's Project Glasswing: The AI Model That Found Zero-Days in Every Major OS
Cover image for Inside Anthropic's Project Glasswing: The AI Model That Found Zero-Days in Every Major OS

Inside Anthropic's Project Glasswing: The AI Model That Found Zero-Days in Every Major OS

29
Comments
7 min read
Track Every Action Your AI Agent Takes — Audit Logs, Auth Management & Compliance for CLI Automation

Track Every Action Your AI Agent Takes — Audit Logs, Auth Management & Compliance for CLI Automation

Comments 1
4 min read
My AI Agent Leaked an API Key, Burned $47, and Looped 200 Times — So I Built It a Bodyguard

My AI Agent Leaked an API Key, Burned $47, and Looped 200 Times — So I Built It a Bodyguard

1
Comments
3 min read
Serving RSA and ECDSA from One ASP.NET Core Kestrel Endpoint
Cover image for Serving RSA and ECDSA from One ASP.NET Core Kestrel Endpoint

Serving RSA and ECDSA from One ASP.NET Core Kestrel Endpoint

2
Comments
6 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.