Forem

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
The State of MCP Server Security in 2026 — 118 Findings Across 68 Packages

The State of MCP Server Security in 2026 — 118 Findings Across 68 Packages

Comments 2
3 min read
RAGGuard: Filter During Vector Search, Not After Retrieval

RAGGuard: Filter During Vector Search, Not After Retrieval

Comments
1 min read
Unknown File in WordPress Core? How Fake GIF Backdoors Hide in WordPress

Unknown File in WordPress Core? How Fake GIF Backdoors Hide in WordPress

Comments
6 min read
How a Small OSINT Team Turned the Epstein Files Dump Into Actionable Intelligence
Cover image for How a Small OSINT Team Turned the Epstein Files Dump Into Actionable Intelligence

How a Small OSINT Team Turned the Epstein Files Dump Into Actionable Intelligence

3
Comments
5 min read
Making Amazon Bedrock AgentCore Gateway Accessible (Only Through CloudFront)

Making Amazon Bedrock AgentCore Gateway Accessible (Only Through CloudFront)

2
Comments
4 min read
OWASP Cornucopia is publishing it’s darkest secrets!
Cover image for OWASP Cornucopia is publishing it’s darkest secrets!

OWASP Cornucopia is publishing it’s darkest secrets!

5
Comments 1
5 min read
Stop Using JSON Keys: Secure Your GitHub Actions with Workload Identity Federation
Cover image for Stop Using JSON Keys: Secure Your GitHub Actions with Workload Identity Federation

Stop Using JSON Keys: Secure Your GitHub Actions with Workload Identity Federation

Comments
4 min read
Why Configuration Management Will Make or Break Your Protocol
Cover image for Why Configuration Management Will Make or Break Your Protocol

Why Configuration Management Will Make or Break Your Protocol

3
Comments
5 min read
Cloud Computing

Cloud Computing

Comments
9 min read
What If Your CI Pipeline Could catch regulatory compliance violations of your code?
Cover image for What If Your CI Pipeline Could catch regulatory compliance violations of your code?

What If Your CI Pipeline Could catch regulatory compliance violations of your code?

11
Comments
9 min read
How to Detect Prompt Injection Attacks in Your AI Agent (3 Layers, 5 Minutes)
Cover image for How to Detect Prompt Injection Attacks in Your AI Agent (3 Layers, 5 Minutes)

How to Detect Prompt Injection Attacks in Your AI Agent (3 Layers, 5 Minutes)

1
Comments 2
5 min read
Why I stopped decoding JWTs online

Why I stopped decoding JWTs online

1
Comments 1
1 min read
I might have just solved the biggest unsolved problem in AI agent security
Cover image for I might have just solved the biggest unsolved problem in AI agent security

I might have just solved the biggest unsolved problem in AI agent security

Comments
4 min read
Lessons learned integrating Paddle (Sandbox to Live) & fixing DMARC as a solo dev

Lessons learned integrating Paddle (Sandbox to Live) & fixing DMARC as a solo dev

Comments
2 min read
Refactoring Legacy Website and the Test Suite That Never Was

Refactoring Legacy Website and the Test Suite That Never Was

Comments
2 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.