Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Introducing the ABOM: Why Your CI/CD Pipelines Need a Bill of Materials
Cover image for Introducing the ABOM: Why Your CI/CD Pipelines Need a Bill of Materials

Introducing the ABOM: Why Your CI/CD Pipelines Need a Bill of Materials

Comments
4 min read
The LiteLLM Supply Chain Attack Broke Trust in Python-Based AI Infrastructure

The LiteLLM Supply Chain Attack Broke Trust in Python-Based AI Infrastructure

6
Comments
7 min read
Why Your WordPress Security Plugin is Killing Your TTFB (And What to Use Instead)
Cover image for Why Your WordPress Security Plugin is Killing Your TTFB (And What to Use Instead)

Why Your WordPress Security Plugin is Killing Your TTFB (And What to Use Instead)

1
Comments
2 min read
5 Smart Contract Anti-Patterns That Cost DeFi $137M in Q1 2026 — And the Exact Code Fixes

5 Smart Contract Anti-Patterns That Cost DeFi $137M in Q1 2026 — And the Exact Code Fixes

Comments
5 min read
Introducing AIO Sandbox, All-in-One Sandbox Environment for AI Agents

Introducing AIO Sandbox, All-in-One Sandbox Environment for AI Agents

Comments
2 min read
EtherHiding in 2026: How Attackers Weaponize Smart Contracts as Malware Infrastructure — And How to Detect It

EtherHiding in 2026: How Attackers Weaponize Smart Contracts as Malware Infrastructure — And How to Detect It

Comments
6 min read
Your Python Environment Might Be Compromised by litellm (And Here's How to Check)
Cover image for Your Python Environment Might Be Compromised by litellm (And Here's How to Check)

Your Python Environment Might Be Compromised by litellm (And Here's How to Check)

1
Comments
10 min read
Stop Putting API Keys in .env Files — Use Your OS Keychain Instead

Stop Putting API Keys in .env Files — Use Your OS Keychain Instead

1
Comments
6 min read
The Legacy Smart Contract Time Bomb: How AI Hackers Are Targeting DeFi's Forgotten Code

The Legacy Smart Contract Time Bomb: How AI Hackers Are Targeting DeFi's Forgotten Code

Comments
7 min read
Your AI Agents Are Running Unsupervised

Your AI Agents Are Running Unsupervised

Comments
2 min read
AI-Generated Code Is a Security Liability: What Every Developer Needs to Know in 2026

AI-Generated Code Is a Security Liability: What Every Developer Needs to Know in 2026

1
Comments
10 min read
Semgrep Observability with OpenTelemetry

Semgrep Observability with OpenTelemetry

Comments
4 min read
AI Crawler Management: The Definitive Guide to robots.txt for AI Bots

AI Crawler Management: The Definitive Guide to robots.txt for AI Bots

Comments
3 min read
18,883 MCP servers. Five Chinese tech giants joined this week. Zero security audits.

18,883 MCP servers. Five Chinese tech giants joined this week. Zero security audits.

7
Comments
3 min read
API Credentials in Autonomous Agent Fleets: A Secrets Management Architecture Guide

API Credentials in Autonomous Agent Fleets: A Secrets Management Architecture Guide

Comments
7 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.