Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
OAuth 2.0 Explained: From Authorization Codes to PKCE (The Complete Picture)

OAuth 2.0 Explained: From Authorization Codes to PKCE (The Complete Picture)

2
Comments
4 min read
The YieldBlox $10M Oracle Poisoning: How One Trade in a Dead Market Drained an Entire Lending Pool — And the 5-Defense Pattern Every Protocol Needs

The YieldBlox $10M Oracle Poisoning: How One Trade in a Dead Market Drained an Entire Lending Pool — And the 5-Defense Pattern Every Protocol Needs

1
Comments
5 min read
The Privacy Problem with Online PDF Tools (and How I Fixed It)

The Privacy Problem with Online PDF Tools (and How I Fixed It)

Comments
4 min read
190 Things Claude Code Hooks Cannot Enforce (And What to Do Instead)

190 Things Claude Code Hooks Cannot Enforce (And What to Do Instead)

Comments
8 min read
What 10 Real AI Agent Disasters Taught Me About Autonomous Systems

What 10 Real AI Agent Disasters Taught Me About Autonomous Systems

1
Comments
5 min read
The Venus Protocol Donation Attack: How a Compound Fork's getCashPrior() Let an Attacker Bypass Supply Caps and Create $2.18M in Bad Debt

The Venus Protocol Donation Attack: How a Compound Fork's getCashPrior() Let an Attacker Bypass Supply Caps and Create $2.18M in Bad Debt

1
Comments
5 min read
Anthropic accidentally published Claude Code's source code. Here's the part nobody's talking about.

Anthropic accidentally published Claude Code's source code. Here's the part nobody's talking about.

5
Comments 3
4 min read
Is Your Site Redirecting HTTP to HTTPS? Here's How to Check

Is Your Site Redirecting HTTP to HTTPS? Here's How to Check

2
Comments 1
3 min read
I hardened my Hetzner VPS from scratch — here's everything I did (and the tools I built along the way)
Cover image for I hardened my Hetzner VPS from scratch — here's everything I did (and the tools I built along the way)

I hardened my Hetzner VPS from scratch — here's everything I did (and the tools I built along the way)

Comments
4 min read
Python's `.pth` and `site-packages` Vulnerability: Unresolved Security Risk Since 2018

Python's `.pth` and `site-packages` Vulnerability: Unresolved Security Risk Since 2018

Comments
12 min read
Don't Let Your AI Agents Hold Their Own Credentials

Don't Let Your AI Agents Hold Their Own Credentials

Comments
4 min read
Solana's Permanent Delegate Burn Scam: How Token-2022 Extensions Power 2026's Largest Automated Rug Pull Factory — And a Detection Pipeline to Stop It

Solana's Permanent Delegate Burn Scam: How Token-2022 Extensions Power 2026's Largest Automated Rug Pull Factory — And a Detection Pipeline to Stop It

Comments
6 min read
👮🏻‍♂️ JWT Logout: What “Stateless” Really Means in Production
Cover image for 👮🏻‍♂️ JWT Logout: What “Stateless” Really Means in Production

👮🏻‍♂️ JWT Logout: What “Stateless” Really Means in Production

Comments
3 min read
Mutation Testing for Solidity: The Audit Quality Metric Your Protocol Is Ignoring

Mutation Testing for Solidity: The Audit Quality Metric Your Protocol Is Ignoring

1
Comments
6 min read
AI Agent Guardrails: How to Keep Your Agent Safe and Reliable (2026 Guide)

AI Agent Guardrails: How to Keep Your Agent Safe and Reliable (2026 Guide)

Comments
11 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.