Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
CVE-2026-22892: Confused Deputy in the Chatroom: Dissecting CVE-2026-22892

CVE-2026-22892: Confused Deputy in the Chatroom: Dissecting CVE-2026-22892

Comments
2 min read
WebSockets Can Stall Without Disconnecting — And It’s Worse on Android
Cover image for WebSockets Can Stall Without Disconnecting — And It’s Worse on Android

WebSockets Can Stall Without Disconnecting — And It’s Worse on Android

3
Comments
2 min read
Best OTP Auto-Verification Libraries for React Native (2026 Comparison)
Cover image for Best OTP Auto-Verification Libraries for React Native (2026 Comparison)

Best OTP Auto-Verification Libraries for React Native (2026 Comparison)

1
Comments
2 min read
CVE-2025-33042: Schema to Shell: Unpacking the Apache Avro Code Injection Vulnerability

CVE-2025-33042: Schema to Shell: Unpacking the Apache Avro Code Injection Vulnerability

Comments
2 min read
We Broke Staging With a One-Line Config Change (And Didn’t Notice Until It Was Too Late)

We Broke Staging With a One-Line Config Change (And Didn’t Notice Until It Was Too Late)

2
Comments
2 min read
OSINT Isn’t About Skill Anymore. It’s About Systems
Cover image for OSINT Isn’t About Skill Anymore. It’s About Systems

OSINT Isn’t About Skill Anymore. It’s About Systems

2
Comments
8 min read
The Two Bugs That Kill Startups: A Deep Dive into XSS and CSRF
Cover image for The Two Bugs That Kill Startups: A Deep Dive into XSS and CSRF

The Two Bugs That Kill Startups: A Deep Dive into XSS and CSRF

1
Comments
2 min read
Browser automation safety for SetupClaw: what to automate, what to keep manual, and how to handle credentials

Browser automation safety for SetupClaw: what to automate, what to keep manual, and how to handle credentials

Comments
4 min read
What Open Source Maintainers Miss in Large PRs (And How to Catch It)

What Open Source Maintainers Miss in Large PRs (And How to Catch It)

Comments
4 min read
Best Snyk Alternatives in 2026: Open-Source Dependency Security Tools

Best Snyk Alternatives in 2026: Open-Source Dependency Security Tools

Comments
2 min read
ObfusPS — Building a Smart, AST-Aware PowerShell Obfuscation Engine in Go
Cover image for ObfusPS — Building a Smart, AST-Aware PowerShell Obfuscation Engine in Go

ObfusPS — Building a Smart, AST-Aware PowerShell Obfuscation Engine in Go

1
Comments
2 min read
Email Authentication That Holds Up in the Real World (SPF, DKIM, DMARC — and the messy parts)

Email Authentication That Holds Up in the Real World (SPF, DKIM, DMARC — and the messy parts)

Comments
6 min read
The New Cost of Trust: Why Supply Chains and Identity Now Decide Whether Your Product Survives

The New Cost of Trust: Why Supply Chains and Identity Now Decide Whether Your Product Survives

Comments
5 min read
I needed Claude Code as a network service for my pipelines. So I built one.

I needed Claude Code as a network service for my pipelines. So I built one.

Comments
3 min read
The Forensic Black Box: Why Logs That Can Be Deleted Are Security Theater

The Forensic Black Box: Why Logs That Can Be Deleted Are Security Theater

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.