Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Your MCP Server Is a Security Hole. Here's How to Lock It Down.
Cover image for Your MCP Server Is a Security Hole. Here's How to Lock It Down.

Your MCP Server Is a Security Hole. Here's How to Lock It Down.

9
Comments 2
6 min read
Your AI Agents Have 5 Months to Comply With the EU AI Act — Here's What You're Missing

Your AI Agents Have 5 Months to Comply With the EU AI Act — Here's What You're Missing

Comments
4 min read
GuardDuty: Your AWS Watchdog
Cover image for GuardDuty: Your AWS Watchdog

GuardDuty: Your AWS Watchdog

Comments
5 min read
Your Connection is Not Private: What Your Browser Is Warning You About?

Your Connection is Not Private: What Your Browser Is Warning You About?

1
Comments
6 min read
CVE-2025-13465: Lodash: The Delete Button for the Universe (CVE-2025-13465)

CVE-2025-13465: Lodash: The Delete Button for the Universe (CVE-2025-13465)

Comments
2 min read
Operational Indistinguishability: A Technical Guide to the Doppelgänger Framework
Cover image for Operational Indistinguishability: A Technical Guide to the Doppelgänger Framework

Operational Indistinguishability: A Technical Guide to the Doppelgänger Framework

Comments
4 min read
Every AI Agent Framework Trusts the Agent. That's the Problem.

Every AI Agent Framework Trusts the Agent. That's the Problem.

11
Comments 18
5 min read
Offline vs Cloud: the Real Threat Model in Password Managers
Cover image for Offline vs Cloud: the Real Threat Model in Password Managers

Offline vs Cloud: the Real Threat Model in Password Managers

Comments
2 min read
The 'Instruction Hierarchy' is Dead: Why Your Agent's Skills Are a Supply Chain Nightmare

The 'Instruction Hierarchy' is Dead: Why Your Agent's Skills Are a Supply Chain Nightmare

Comments 1
4 min read
Strengthening OAuth 2.0 with FAPI 2.0
Cover image for Strengthening OAuth 2.0 with FAPI 2.0

Strengthening OAuth 2.0 with FAPI 2.0

3
Comments
4 min read
CVE-2026-24047: Backstage Pass: Breaking Out of the Sandbox with Symlinks

CVE-2026-24047: Backstage Pass: Breaking Out of the Sandbox with Symlinks

Comments
2 min read
CVE-2026-23733: Mermaid's Song: From Flowchart to Remote Code Execution in LobeChat

CVE-2026-23733: Mermaid's Song: From Flowchart to Remote Code Execution in LobeChat

Comments
2 min read
CI and CD JOBs – What Exactly It Does in Production

CI and CD JOBs – What Exactly It Does in Production

1
Comments
9 min read
GHSA-PCHF-49FH-W34R: Soft Serve, Hard Fail: The Context Pollution Authentication Bypass

GHSA-PCHF-49FH-W34R: Soft Serve, Hard Fail: The Context Pollution Authentication Bypass

Comments
2 min read
How we replaced .env files across 5 microservices without touching the app code

How we replaced .env files across 5 microservices without touching the app code

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.