Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
4 Lines in ~/.npmrc That Block 80% of npm Supply Chain Attacks
Cover image for 4 Lines in ~/.npmrc That Block 80% of npm Supply Chain Attacks

4 Lines in ~/.npmrc That Block 80% of npm Supply Chain Attacks

2
Comments
6 min read
Binalyzer: Phase 3 is now complete!
Cover image for Binalyzer: Phase 3 is now complete!

Binalyzer: Phase 3 is now complete!

Comments
3 min read
Why Identity-Framing Jailbreaks Bypass Your LLM Safety Filters
Cover image for Why Identity-Framing Jailbreaks Bypass Your LLM Safety Filters

Why Identity-Framing Jailbreaks Bypass Your LLM Safety Filters

1
Comments
5 min read
Making OAuth Testable: Rethinking OIDC Clients in JavaScript

Making OAuth Testable: Rethinking OIDC Clients in JavaScript

2
Comments
9 min read
Slopsquatting: The AI Package Hallucination Attack You're Probably Not Defending Against
Cover image for Slopsquatting: The AI Package Hallucination Attack You're Probably Not Defending Against

Slopsquatting: The AI Package Hallucination Attack You're Probably Not Defending Against

1
Comments
6 min read
HTTP Request Smuggling: When Proxies and Servers Disagree

HTTP Request Smuggling: When Proxies and Servers Disagree

1
Comments
1 min read
My First Week Back in Web3: 3 Terrifying Things I Learned as an AI Engineer.

My First Week Back in Web3: 3 Terrifying Things I Learned as an AI Engineer.

Comments
1 min read
When a protocol vendor declines to patch, the test harness becomes the spec

When a protocol vendor declines to patch, the test harness becomes the spec

Comments
5 min read
Git History as an Attack Surface

Git History as an Attack Surface

Comments
4 min read
Layer 3 of the Agentic OS: Taming AI with Deterministic Hooks and Workflows

Layer 3 of the Agentic OS: Taming AI with Deterministic Hooks and Workflows

Comments
3 min read
Production AI Agents in Kubernetes: A 7-Control Checklist for Platform Teams
Cover image for Production AI Agents in Kubernetes: A 7-Control Checklist for Platform Teams

Production AI Agents in Kubernetes: A 7-Control Checklist for Platform Teams

Comments
15 min read
AI agent governance, what it actually takes in production

AI agent governance, what it actually takes in production

Comments
16 min read
How to Prevent IDOR Vulnerabilities in Django REST APIs

How to Prevent IDOR Vulnerabilities in Django REST APIs

1
Comments
10 min read
How I built a production-ready Wazuh SIEM on Docker (with custom rules for VMware, AWS and GCP)

How I built a production-ready Wazuh SIEM on Docker (with custom rules for VMware, AWS and GCP)

Comments
3 min read
Lakera Guard in 30 Lines — Production-Ready AI Safety for Next.js Route Handlers (2026)

Lakera Guard in 30 Lines — Production-Ready AI Safety for Next.js Route Handlers (2026)

Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.