Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
JSON Web Tokens (JWT): Deep Dive into Design, Security Risks and Real-World Failures
Cover image for JSON Web Tokens (JWT): Deep Dive into Design, Security Risks and Real-World Failures

JSON Web Tokens (JWT): Deep Dive into Design, Security Risks and Real-World Failures

Comments
4 min read
7 Open-Source Security Tools Every Developer Ignores (But Shouldn't)
Cover image for 7 Open-Source Security Tools Every Developer Ignores (But Shouldn't)

7 Open-Source Security Tools Every Developer Ignores (But Shouldn't)

Comments
6 min read
The Dependency Avalanche: 644 Strangers in Your package.json

The Dependency Avalanche: 644 Strangers in Your package.json

Comments
6 min read
The Bucket You Deleted is Still in Your DNS: S3 Bucket Takeover at Bime

The Bucket You Deleted is Still in Your DNS: S3 Bucket Takeover at Bime

Comments
5 min read
Building a DDoS Bouncer: Anomaly Detection with Python & Z-Score

Building a DDoS Bouncer: Anomaly Detection with Python & Z-Score

4
Comments 1
2 min read
PreviewDrop's Privacy Policy Is Live — What It Means for Teams Who Care About Data

PreviewDrop's Privacy Policy Is Live — What It Means for Teams Who Care About Data

Comments
2 min read
572K Weekly Downloads, One Preinstall Script: The SAP CAP Supply Chain Attack Your AI Agent Would Have Missed

572K Weekly Downloads, One Preinstall Script: The SAP CAP Supply Chain Attack Your AI Agent Would Have Missed

1
Comments
3 min read
GHSA-H829-5CG7-6HFF: GHSA-H829-5CG7-6HFF: Improper Tag Signature Verification in Gitverify

GHSA-H829-5CG7-6HFF: GHSA-H829-5CG7-6HFF: Improper Tag Signature Verification in Gitverify

Comments
2 min read
Fixing a 1-in-256 bug in CLWW order-preserving encryption

Fixing a 1-in-256 bug in CLWW order-preserving encryption

Comments
8 min read
What Is Agent Reliability Testing?

What Is Agent Reliability Testing?

Comments
9 min read
Fully Migrate Secrets Out Of Terraform Module State Without Breaking Existing Users

Fully Migrate Secrets Out Of Terraform Module State Without Breaking Existing Users

Comments
2 min read
Continuous monitoring caught a credential leak in a published MCP package. Six republishes later, it is still there.

Continuous monitoring caught a credential leak in a published MCP package. Six republishes later, it is still there.

Comments
7 min read
Security news weekly round-up - 8th May 2026
Cover image for Security news weekly round-up - 8th May 2026

Security news weekly round-up - 8th May 2026

1
Comments 1
3 min read
How to Secure an Ubuntu Linux Server for Production

How to Secure an Ubuntu Linux Server for Production

3
Comments
2 min read
🛡️ Lirix v1.4.1: The Ecosystem Domination Release

🛡️ Lirix v1.4.1: The Ecosystem Domination Release

1
Comments
6 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.