DEV Community

#infosec

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
The Patch You Postpone Is the Exploit You Invite

The Patch You Postpone Is the Exploit You Invite

Comments
2 min read
Machine-Speed Attacks, Human-Paced Defense: The Credential Gap Behind Thirteen 2025/2026 Breaches

Machine-Speed Attacks, Human-Paced Defense: The Credential Gap Behind Thirteen 2025/2026 Breaches

4
Comments
5 min read
Securing the Mission: Applying Security Techniques to Computing Resources

Securing the Mission: Applying Security Techniques to Computing Resources

Comments
4 min read
Least Privilege Is a Habit, Not a Project

Least Privilege Is a Habit, Not a Project

Comments
2 min read
Weekly Cybersecurity Roundup; Week of August 28, 2026

Weekly Cybersecurity Roundup; Week of August 28, 2026

Comments
6 min read
OWASP Top 10: A09 & A10 — Logging, Alerting and Exceptional Conditions

OWASP Top 10: A09 & A10 — Logging, Alerting and Exceptional Conditions

Comments
1 min read
Inside Elastic's agentic SOC: How we took AI alert triage from 60% to 92% accuracy

Inside Elastic's agentic SOC: How we took AI alert triage from 60% to 92% accuracy

1
Comments
1 min read
Critical Gitea RCE Under Active Exploitation: CVE-2026-60004 Turns a Signup Form Into Shell Access

Critical Gitea RCE Under Active Exploitation: CVE-2026-60004 Turns a Signup Form Into Shell Access

Comments
5 min read
I Set Up a Fake Internet to Catch a Trojan: Analyzing FlexenseActivator.exe

I Set Up a Fake Internet to Catch a Trojan: Analyzing FlexenseActivator.exe

Comments
6 min read
The safety penalty: Reclaiming operational sovereignty in the age of AI

The safety penalty: Reclaiming operational sovereignty in the age of AI

1
Comments
1 min read
Oracle WebLogic Proxy Plug-in Flaw Hits CISA KEV: CVSS 10.0, Unauthenticated, Exploited Since February

Oracle WebLogic Proxy Plug-in Flaw Hits CISA KEV: CVSS 10.0, Unauthenticated, Exploited Since February

Comments
5 min read
Keycloak CVE-2026-18963: Unauthenticated Password Reset Hands Over Any Account, Including Admins

Keycloak CVE-2026-18963: Unauthenticated Password Reset Hands Over Any Account, Including Admins

Comments
5 min read
Why Most ML Firewalls Fail (And How We Fixed It with a Honeypot Feedback Loop)

Why Most ML Firewalls Fail (And How We Fixed It with a Honeypot Feedback Loop)

Comments
4 min read
Three Russian Clusters Are Phishing Auth Flows, Not Passwords: OAuth, App Passwords, and WhatsApp Device Linking

Three Russian Clusters Are Phishing Auth Flows, Not Passwords: OAuth, App Passwords, and WhatsApp Device Linking

Comments
5 min read
Rust Build Scripts Executed Malware From a Crate With 245 Million Downloads

Rust Build Scripts Executed Malware From a Crate With 245 Million Downloads

Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.