Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Your DEV Credentials Shouldn't Be Able to Sink PROD
Cover image for Your DEV Credentials Shouldn't Be Able to Sink PROD

Your DEV Credentials Shouldn't Be Able to Sink PROD

Comments
7 min read
Fortifying Web Applications: Understanding CSRF (Cross-Site Request Forgery)

Fortifying Web Applications: Understanding CSRF (Cross-Site Request Forgery)

1
Comments
2 min read
Remediating Critical Security Vulnerabilities in Outdated .NET Application Within One Week for Audit Compliance

Remediating Critical Security Vulnerabilities in Outdated .NET Application Within One Week for Audit Compliance

1
Comments 2
15 min read
OPA (Open Policy Agent) with Gatekeeper

OPA (Open Policy Agent) with Gatekeeper

2
Comments
7 min read
The Blocklist That Forgot About Time

The Blocklist That Forgot About Time

1
Comments
4 min read
Your AWS Credentials Are Still on GitHub Even After You Delete Them
Cover image for Your AWS Credentials Are Still on GitHub Even After You Delete Them

Your AWS Credentials Are Still on GitHub Even After You Delete Them

2
Comments
5 min read
Introducing Zerowall CLI v1.1.0 — A Simple Firewall Management Tool for Linux

Introducing Zerowall CLI v1.1.0 — A Simple Firewall Management Tool for Linux

1
Comments
2 min read
Verify Post-Quantum TLS Negotiation from Python `requests` on Linux

Verify Post-Quantum TLS Negotiation from Python `requests` on Linux

Comments
4 min read
GHSA-33HQ-FVWR-56PM: The Billion-Comma Attack: Nuking Svelte SSR with Sparse Arrays

GHSA-33HQ-FVWR-56PM: The Billion-Comma Attack: Nuking Svelte SSR with Sparse Arrays

Comments
2 min read
JWT Authentication: Securing API Routes with JSON Web Tokens in FastAPI

JWT Authentication: Securing API Routes with JSON Web Tokens in FastAPI

1
Comments
2 min read
I built a tokenless secrets manager that runs entirely on Git and KMS (No Vault required)
Cover image for I built a tokenless secrets manager that runs entirely on Git and KMS (No Vault required)

I built a tokenless secrets manager that runs entirely on Git and KMS (No Vault required)

2
Comments 2
3 min read
GHSA-6C9J-X93C-RW6J: OpenClaw Side-Channel: The `safeBins` File Existence Oracle

GHSA-6C9J-X93C-RW6J: OpenClaw Side-Channel: The `safeBins` File Existence Oracle

Comments
2 min read
x402 turned a joke into my revenue model ($0.008/request, no API keys)

x402 turned a joke into my revenue model ($0.008/request, no API keys)

1
Comments
3 min read
Client-Side Security: Why Our Developer Tools Never Touch Your Data

Client-Side Security: Why Our Developer Tools Never Touch Your Data

Comments
3 min read
Protecting Language Models Against Unauthorized Distillation through Trace Rewriting

Protecting Language Models Against Unauthorized Distillation through Trace Rewriting

Comments
4 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.