Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
GHSA-F8H5-X737-X4XR: Finch-Rust: The Shai-Hulud Worm Burrows into Crates.io

GHSA-F8H5-X737-X4XR: Finch-Rust: The Shai-Hulud Worm Burrows into Crates.io

Comments
2 min read
13,981 Downloads. A Hardcoded ByteDance Token. Zero Vetting.

13,981 Downloads. A Hardcoded ByteDance Token. Zero Vetting.

Comments
4 min read
Securing Next.js + Supabase After Switching to NextAuth
Cover image for Securing Next.js + Supabase After Switching to NextAuth

Securing Next.js + Supabase After Switching to NextAuth

Comments
5 min read
My AI agent pushed directly to main. The system prompt said don't.
Cover image for My AI agent pushed directly to main. The system prompt said don't.

My AI agent pushed directly to main. The system prompt said don't.

Comments
6 min read
Digital Stewardship: Why Sovereign Infrastructure is the Silent Requirement for AI Safety

Digital Stewardship: Why Sovereign Infrastructure is the Silent Requirement for AI Safety

Comments 6
2 min read
State of MCP Security

State of MCP Security

Comments
5 min read
Why Your AI Agent Shouldn't Know Your API Keys (And What to Do Instead)

Why Your AI Agent Shouldn't Know Your API Keys (And What to Do Instead)

1
Comments
3 min read
"CVE-2026-25253: WebSocket hijacking turns your AI agent into an attack tool"

"CVE-2026-25253: WebSocket hijacking turns your AI agent into an attack tool"

Comments
5 min read
How to Check Your Website's Security Headers (And Why You Should)

How to Check Your Website's Security Headers (And Why You Should)

Comments
4 min read
Building an HTTP Header Analyser in Python:

Building an HTTP Header Analyser in Python:

Comments
3 min read
Contratando para áreas que você não domina

Contratando para áreas que você não domina

2
Comments
2 min read
AI Agent Authentication & Authorization Deep Dive: Reading draft-klrc-aiagent-auth-00
Cover image for AI Agent Authentication & Authorization Deep Dive: Reading draft-klrc-aiagent-auth-00

AI Agent Authentication & Authorization Deep Dive: Reading draft-klrc-aiagent-auth-00

2
Comments 2
15 min read
I checked the WordPress sites I built years ago. Here's what I found.

I checked the WordPress sites I built years ago. Here's what I found.

Comments
6 min read
“It Wasn’t Broken, Just Untrusted: Getting DirSize to Run on macOS Without Any Errors”

“It Wasn’t Broken, Just Untrusted: Getting DirSize to Run on macOS Without Any Errors”

Comments
4 min read
The Architecture Behind Tamper-Proof Audit Logs

The Architecture Behind Tamper-Proof Audit Logs

Comments 1
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.