Forem

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
CVE-2024-6387: Critical OpenSSH Vulnerability Allowing Root Access

CVE-2024-6387: Critical OpenSSH Vulnerability Allowing Root Access

Comments
11 min read
How Bash Command Safety Analysis Works in AI Systems

How Bash Command Safety Analysis Works in AI Systems

Comments
5 min read
DeFi Security Weekly: Privacy Under Attack, Wallet Vulnerabilities, and Infrastructure Trust Crisis

DeFi Security Weekly: Privacy Under Attack, Wallet Vulnerabilities, and Infrastructure Trust Crisis

Comments
5 min read
Architecture Documentation as a First-Class Engineering Asset
Cover image for Architecture Documentation as a First-Class Engineering Asset

Catching systemic failures linters miss

Architecture Documentation as a First-Class Engineering Asset

42
Comments 22
7 min read
The Insider Screamed. The Outsider Whispered. Same Truth, Different Volume.
Cover image for The Insider Screamed. The Outsider Whispered. Same Truth, Different Volume.

The Insider Screamed. The Outsider Whispered. Same Truth, Different Volume.

Comments
4 min read
AI agents just got dangerous: default permit is the security bug nobody talks about

AI agents just got dangerous: default permit is the security bug nobody talks about

Comments
4 min read
The Ethical Grey: Coding for Results When the “Best Practices” Manual Is Burning
Cover image for The Ethical Grey: Coding for Results When the “Best Practices” Manual Is Burning

The Ethical Grey: Coding for Results When the “Best Practices” Manual Is Burning

1
Comments
7 min read
AI-Generated APIs Keep Shipping Wildcard CORS. Here's the Fix.

AI-Generated APIs Keep Shipping Wildcard CORS. Here's the Fix.

Comments
3 min read
74.6% of AI Agents Failed Social Engineering Tests. Here's How We Harden Ours.

74.6% of AI Agents Failed Social Engineering Tests. Here's How We Harden Ours.

1
Comments
4 min read
Why the Capital One Breach Wasn't About One Misconfiguration

Why the Capital One Breach Wasn't About One Misconfiguration

Comments
5 min read
Software Supply Chain Security After Axios

Software Supply Chain Security After Axios

Comments
6 min read
I built a BIP-39 seed phrase scanner that reads raw disk sectors - and just open-sourced the engine
Cover image for I built a BIP-39 seed phrase scanner that reads raw disk sectors - and just open-sourced the engine

I built a BIP-39 seed phrase scanner that reads raw disk sectors - and just open-sourced the engine

Comments
1 min read
5 things your AI agent should never leak (and how to detect them)

5 things your AI agent should never leak (and how to detect them)

Comments
1 min read
How HookProbe Detects CVE-2026-3502 (TrueConf Client)
Cover image for How HookProbe Detects CVE-2026-3502 (TrueConf Client)

How HookProbe Detects CVE-2026-3502 (TrueConf Client)

Comments
5 min read
Your AI agents need audit trails before August 2026. Here is how I added them in 5 lines of Python.

Your AI agents need audit trails before August 2026. Here is how I added them in 5 lines of Python.

Comments
5 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.