Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
We Scanned 4,275 MCP Servers. Most of Them Shouldn't Be Trusted.

We Scanned 4,275 MCP Servers. Most of Them Shouldn't Be Trusted.

1
Comments
6 min read
Smart Contract Security: Common Vulnerabilities and How to Avoid Them (Ethereum, Solana, BSC)

Smart Contract Security: Common Vulnerabilities and How to Avoid Them (Ethereum, Solana, BSC)

2
Comments
6 min read
Why Agent Discovery Systems Check Identity First (and Why That's Wrong)
Cover image for Why Agent Discovery Systems Check Identity First (and Why That's Wrong)

Why Agent Discovery Systems Check Identity First (and Why That's Wrong)

1
Comments
5 min read
Solana MEV Defense in 2026: How Sandwich Bots Extracted $500M — And the 6 Protocol-Level Defenses That Actually Work

Solana MEV Defense in 2026: How Sandwich Bots Extracted $500M — And the 6 Protocol-Level Defenses That Actually Work

1
Comments
9 min read
The $26M Configuration Error: How Aave's CAPO Oracle Misfired — And 5 Oracle Hardening Patterns Every DeFi Protocol Needs

The $26M Configuration Error: How Aave's CAPO Oracle Misfired — And 5 Oracle Hardening Patterns Every DeFi Protocol Needs

Comments
6 min read
RSAC 2026: Every AI IDE Is Vulnerable - Here's What That Actually Means for Your Workflow

RSAC 2026: Every AI IDE Is Vulnerable - Here's What That Actually Means for Your Workflow

Comments
6 min read
The ZK Circuit Kill Chain: 7 Zero-Knowledge Proof Vulnerabilities That Have Cost DeFi Over $200M — And How to Audit for Each One

The ZK Circuit Kill Chain: 7 Zero-Knowledge Proof Vulnerabilities That Have Cost DeFi Over $200M — And How to Audit for Each One

1
Comments
7 min read
Hardening JavaScript JITs: Practical Mitigations for Modern Engines
Cover image for Hardening JavaScript JITs: Practical Mitigations for Modern Engines

Hardening JavaScript JITs: Practical Mitigations for Modern Engines

Comments
9 min read
The Verification Paradox: Why 100% of AI-Assisted Devs Face Incidents

The Verification Paradox: Why 100% of AI-Assisted Devs Face Incidents

1
Comments 1
2 min read
Arbitrary External Calls: The $17M DEX Aggregator Attack Pattern That's Still Lurking in 90% of Swap Routers

Arbitrary External Calls: The $17M DEX Aggregator Attack Pattern That's Still Lurking in 90% of Swap Routers

Comments
5 min read
Why every AI agent needs a cryptographic identity

Why every AI agent needs a cryptographic identity

Comments
3 min read
Building a Hash Generator with Web Crypto API and a Pure-JS MD5 Fallback
Cover image for Building a Hash Generator with Web Crypto API and a Pure-JS MD5 Fallback

Building a Hash Generator with Web Crypto API and a Pure-JS MD5 Fallback

Comments
5 min read
When /pair approve Bypasses the Scope Guard

When /pair approve Bypasses the Scope Guard

Comments
2 min read
29 Million Secrets Leaked on GitHub Last Year. AI Coding Tools Made It Worse.
Cover image for 29 Million Secrets Leaked on GitHub Last Year. AI Coding Tools Made It Worse.

29 Million Secrets Leaked on GitHub Last Year. AI Coding Tools Made It Worse.

Comments
5 min read
OAuth 2.0 Explained: From Authorization Codes to PKCE (The Complete Picture)

OAuth 2.0 Explained: From Authorization Codes to PKCE (The Complete Picture)

2
Comments
4 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.