DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
The swarm that kept coming back

Reconstructing the AI swarm's wild cyber-attack

The swarm that kept coming back

15
Picked as gem Comments 5
22 min read
38% of an analyst's questions get "no records found" when the data is right there

38% of an analyst's questions get "no records found" when the data is right there

Comments
5 min read
Kapibala: Government Data Theft via WordPress and Active Exploitation of Zyxel CVE-2026-7273

Kapibala: Government Data Theft via WordPress and Active Exploitation of Zyxel CVE-2026-7273

1
Comments
7 min read
CLOSEDQUORUM: An Autonomous Windows Implant Using Multiple LLMs for Attack Decisions

CLOSEDQUORUM: An Autonomous Windows Implant Using Multiple LLMs for Attack Decisions

Comments
7 min read
EvilTokens: AI-Powered PhaaS Abusing Device Code Authentication to Compromise Over 12,000 Mailboxes

EvilTokens: AI-Powered PhaaS Abusing Device Code Authentication to Compromise Over 12,000 Mailboxes

1
Comments
7 min read
TrustSink: Password Theft via a Rogue External MFA Provider in Microsoft Entra ID

TrustSink: Password Theft via a Rogue External MFA Provider in Microsoft Entra ID

1
Comments
6 min read
LLM Relay Infrastructure: Over 80,000 Nodes Obscure User Attribution and Regional Controls

LLM Relay Infrastructure: Over 80,000 Nodes Obscure User Attribution and Regional Controls

1
Comments
7 min read
One vendor was deciding our residential proxy verdicts, and I couldn't grade it against itself

One vendor was deciding our residential proxy verdicts, and I couldn't grade it against itself

Comments
4 min read
An injection that moved is not an injection that was fixed

An injection that moved is not an injection that was fixed

1
Comments
8 min read
How I Bypassed Campus Firewall Port Blocks for Low-Ping Gaming Without a Laggy VPN

How I Bypassed Campus Firewall Port Blocks for Low-Ping Gaming Without a Laggy VPN

Comments
4 min read
Build an Explainable Vendor-Risk Gate in Node.js

Build an Explainable Vendor-Risk Gate in Node.js

Comments
4 min read
How do you stop an LLM from leaking API keys in the code it writes? Default to secret

How do you stop an LLM from leaking API keys in the code it writes? Default to secret

8
Comments 5
8 min read
Transfer Stations in Plain Sight: Enumerating the API Resale Layer Described in the CISA Distillation Advisory

Transfer Stations in Plain Sight: Enumerating the API Resale Layer Described in the CISA Distillation Advisory

Comments
2 min read
Confidential Transfer - QA Test Report

Confidential Transfer - QA Test Report

Comments
4 min read
HTB - Forest

HTB - Forest

Comments
13 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.