Forem

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Security news weekly round-up - 23rd January 2026
Cover image for Security news weekly round-up - 23rd January 2026

Security news weekly round-up - 23rd January 2026

Comments
2 min read
Stop Using .env Files for AI Agents: A Zero-Trust Blueprint

Stop Using .env Files for AI Agents: A Zero-Trust Blueprint

6
Comments
3 min read
RFC 8705 Deep Dive: Turning Access Tokens into "Unstealable Tokens" with mTLS
Cover image for RFC 8705 Deep Dive: Turning Access Tokens into "Unstealable Tokens" with mTLS

RFC 8705 Deep Dive: Turning Access Tokens into "Unstealable Tokens" with mTLS

2
Comments
21 min read
CVE-2026-24009: YAML Deserialization: The Gift That Keeps on Giving in Docling-Core

CVE-2026-24009: YAML Deserialization: The Gift That Keeps on Giving in Docling-Core

Comments
2 min read
AI Agents Lost $600K+ to Prompt Injection — Attack Taxonomy & Code-Level Defenses

AI Agents Lost $600K+ to Prompt Injection — Attack Taxonomy & Code-Level Defenses

1
Comments
2 min read
Navigating the Software-to-Cybersecurity Transition: A Fortune 500 Practitioner's Blueprint
Cover image for Navigating the Software-to-Cybersecurity Transition: A Fortune 500 Practitioner's Blueprint

Navigating the Software-to-Cybersecurity Transition: A Fortune 500 Practitioner's Blueprint

Comments
11 min read
The killer’s signature wasn’t on the weapon, it was in the code.
Cover image for The killer’s signature wasn’t on the weapon, it was in the code.

The killer’s signature wasn’t on the weapon, it was in the code.

1
Comments 3
1 min read
FortiGate Secure Enterprise Network
Cover image for FortiGate Secure Enterprise Network

FortiGate Secure Enterprise Network

1
Comments
3 min read
CVE-2026-0798: Gitea's Ghost in the Machine: Leaking Private Release Notes via Zombie Watchers

CVE-2026-0798: Gitea's Ghost in the Machine: Leaking Private Release Notes via Zombie Watchers

Comments
2 min read
We Scanned 20 Top MCP Servers for Vulnerabilities — The Results Will Shock You
Cover image for We Scanned 20 Top MCP Servers for Vulnerabilities — The Results Will Shock You

We Scanned 20 Top MCP Servers for Vulnerabilities — The Results Will Shock You

Comments 1
4 min read
CVE-2026-1225: XML Ghosts in the Machine: Configuring Your Way to RCE in Logback

CVE-2026-1225: XML Ghosts in the Machine: Configuring Your Way to RCE in Logback

Comments
2 min read
Build Secure, Production-Ready AI Agents with Bifrost’s MCP Gateway

Build Secure, Production-Ready AI Agents with Bifrost’s MCP Gateway

5
Comments
3 min read
Interview Question about Authentication: JWT vs OAuth2 vs SSO
Cover image for Interview Question about Authentication: JWT vs OAuth2 vs SSO

Interview Question about Authentication: JWT vs OAuth2 vs SSO

Comments
5 min read
🔐 MODULE 3: Authentication & Security (Very Important)

🔐 MODULE 3: Authentication & Security (Very Important)

Comments
6 min read
Building Tamper-Evident Audit Trails for Trading Systems: A Complete VCP v1.1 Implementation Guide
Cover image for Building Tamper-Evident Audit Trails for Trading Systems: A Complete VCP v1.1 Implementation Guide

Building Tamper-Evident Audit Trails for Trading Systems: A Complete VCP v1.1 Implementation Guide

Comments
24 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.