Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Stop "Hope-Based" Security: Why Your CI/CD Needs a Deterministic Gate
Cover image for Stop "Hope-Based" Security: Why Your CI/CD Needs a Deterministic Gate

Stop "Hope-Based" Security: Why Your CI/CD Needs a Deterministic Gate

Comments
2 min read
đź“§ Exchange Evasion: C2 Over MAPI
Cover image for đź“§ Exchange Evasion: C2 Over MAPI

đź“§ Exchange Evasion: C2 Over MAPI

Comments
6 min read
The AI Hydra Problem: Fix One AI Bug, Get Two More
Cover image for The AI Hydra Problem: Fix One AI Bug, Get Two More

The AI Hydra Problem: Fix One AI Bug, Get Two More

Comments
12 min read
I Liberated an MDM-locked M2 Macbook. Here's How:
Cover image for I Liberated an MDM-locked M2 Macbook. Here's How:

I Liberated an MDM-locked M2 Macbook. Here's How:

Comments
11 min read
Cloudflare as Reverse proxy SSL Auth

Cloudflare as Reverse proxy SSL Auth

Comments
8 min read
Secure Boot et Linux : l'état de l'art en 2026

Secure Boot et Linux : l'état de l'art en 2026

1
Comments
19 min read
GHSA-382Q-FPQH-29F7: Betting on a Bad Horse: The Malicious `polymarket-clients-sdk` Crate

GHSA-382Q-FPQH-29F7: Betting on a Bad Horse: The Malicious `polymarket-clients-sdk` Crate

Comments
2 min read
GHSA-F8H5-X737-X4XR: Finch-Rust: The Shai-Hulud Worm Burrows into Crates.io

GHSA-F8H5-X737-X4XR: Finch-Rust: The Shai-Hulud Worm Burrows into Crates.io

Comments
2 min read
13,981 Downloads. A Hardcoded ByteDance Token. Zero Vetting.

13,981 Downloads. A Hardcoded ByteDance Token. Zero Vetting.

Comments
4 min read
Introducing TealTiger: AI Security & Cost Control Made Simple
Cover image for Introducing TealTiger: AI Security & Cost Control Made Simple

Introducing TealTiger: AI Security & Cost Control Made Simple

Comments
5 min read
Securing Next.js + Supabase After Switching to NextAuth
Cover image for Securing Next.js + Supabase After Switching to NextAuth

Securing Next.js + Supabase After Switching to NextAuth

Comments
5 min read
My AI agent pushed directly to main. The system prompt said don't.
Cover image for My AI agent pushed directly to main. The system prompt said don't.

My AI agent pushed directly to main. The system prompt said don't.

Comments
6 min read
Why Your AI Agent Shouldn't Know Your API Keys (And What to Do Instead)

Why Your AI Agent Shouldn't Know Your API Keys (And What to Do Instead)

1
Comments
3 min read
"CVE-2026-25253: WebSocket hijacking turns your AI agent into an attack tool"

"CVE-2026-25253: WebSocket hijacking turns your AI agent into an attack tool"

Comments
5 min read
How to Check Your Website's Security Headers (And Why You Should)

How to Check Your Website's Security Headers (And Why You Should)

Comments
4 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.