Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
GHSA-27JP-WM6Q-GP25: Death by Parentheses: The sqlparse Recursive DoS

GHSA-27JP-WM6Q-GP25: Death by Parentheses: The sqlparse Recursive DoS

Comments
2 min read
User Model & Auth Basics: password Hashing with Bcrypt in FastAPI

User Model & Auth Basics: password Hashing with Bcrypt in FastAPI

1
Comments
2 min read
66% of MCP Servers Have Critical Security Vulnerabilities: Urgent Patching and Audits Needed

66% of MCP Servers Have Critical Security Vulnerabilities: Urgent Patching and Audits Needed

3
Comments
13 min read
I build payload-guard-filter
Cover image for I build payload-guard-filter

I build payload-guard-filter

Comments
4 min read
InALign: Tamper-Proof Audit Trails for AI Agents

InALign: Tamper-Proof Audit Trails for AI Agents

Comments
3 min read
Inspecting HTTP Headers to Diagnose Caching and Authentication Issues

Inspecting HTTP Headers to Diagnose Caching and Authentication Issues

1
Comments
5 min read
We Published a Formal Spec for Tamper-Evident AI Audit Chains

We Published a Formal Spec for Tamper-Evident AI Audit Chains

1
Comments 3
4 min read
Stop Hardcoding Security Headers: Automate Your CDN Security with YAML

Stop Hardcoding Security Headers: Automate Your CDN Security with YAML

5
Comments
3 min read
agentlens, unworldly, and the text audit trail gap — why visual replay is still missing

agentlens, unworldly, and the text audit trail gap — why visual replay is still missing

1
Comments 4
4 min read
The Vulnerability: CVE-2026-2441
Cover image for The Vulnerability: CVE-2026-2441

The Vulnerability: CVE-2026-2441

1
Comments
2 min read
How VS Code Copilot Chat Premium Features Leak into Subagents (and Why It Matters)

How VS Code Copilot Chat Premium Features Leak into Subagents (and Why It Matters)

1
Comments
7 min read
A Developer-Friendly Way to Mask API Tokens Without Losing Context

A Developer-Friendly Way to Mask API Tokens Without Losing Context

Comments
3 min read
Security: The Thing That Everyone Loves to Hate
Cover image for Security: The Thing That Everyone Loves to Hate

Security: The Thing That Everyone Loves to Hate

Comments
5 min read
Identity Chaining Deep Dive: Connecting Identity Across Trust Domains with OAuth
Cover image for Identity Chaining Deep Dive: Connecting Identity Across Trust Domains with OAuth

Identity Chaining Deep Dive: Connecting Identity Across Trust Domains with OAuth

2
Comments 3
15 min read
The Replit AI Incident Wasn’t a Prompt Problem. It Was a Trust Problem.
Cover image for The Replit AI Incident Wasn’t a Prompt Problem. It Was a Trust Problem.

The Replit AI Incident Wasn’t a Prompt Problem. It Was a Trust Problem.

Comments
7 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.