DEV Community

#devsecops

Integrating security practices into the DevOps lifecycle.

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Attackers Hit Langflow 12 Times This Year. They Are Not Stealing Data, They Are Stealing Your API Keys

Attackers Hit Langflow 12 Times This Year. They Are Not Stealing Data, They Are Stealing Your API Keys

Comments
7 min read
The Credential in the Repository Nobody Thought Was Public

The Credential in the Repository Nobody Thought Was Public

Comments
2 min read
Before and After: Measuring Security Posture Improvement With Real Metrics

Before and After: Measuring Security Posture Improvement With Real Metrics

Comments
6 min read
DevSecOps Career Path: From DevOps to Secure Pipelines

DevSecOps Career Path: From DevOps to Secure Pipelines

Comments
7 min read
Securing Agentic AI Workflows in n8n: From Leaked API Keys to Encryption Key Compromise

Securing Agentic AI Workflows in n8n: From Leaked API Keys to Encryption Key Compromise

Comments
12 min read
How to Structure Your API Security Testing with OWASP ASTF 🚀

How to Structure Your API Security Testing with OWASP ASTF 🚀

Comments
1 min read
Zero-Day in 24 Hours: How AI-Assisted Exploit Velocity Is Redefining Enterprise Cyber Defense

Zero-Day in 24 Hours: How AI-Assisted Exploit Velocity Is Redefining Enterprise Cyber Defense

Comments
4 min read
Reproducible vulnerability scans with dumpscan

Reproducible vulnerability scans with dumpscan

1
Comments
2 min read
Credential Harvesting Explained: How Attackers Collect Secrets From Developer Machines

Credential Harvesting Explained: How Attackers Collect Secrets From Developer Machines

Comments
12 min read
What Was on This Machine? Answering the Blast Radius Question After a Laptop Compromise

What Was on This Machine? Answering the Blast Radius Question After a Laptop Compromise

Comments
10 min read
Every CISO Needs an AIBOM in 2026 — And Most Vendors Ship a Fiction

Every CISO Needs an AIBOM in 2026 — And Most Vendors Ship a Fiction

Comments
9 min read
How to Reduce Time to Revoke for Exposed Credentials

How to Reduce Time to Revoke for Exposed Credentials

5
Comments 1
8 min read
Why SAST and DAST Aren't Enough for Secrets Security

Why SAST and DAST Aren't Enough for Secrets Security

Comments
10 min read
CVE-2026-35603: Cursor Still Trusts a World-Writable Folder

CVE-2026-35603: Cursor Still Trusts a World-Writable Folder

1
Comments 2
5 min read
How to Measure Time to Revoke for Exposed Credentials

How to Measure Time to Revoke for Exposed Credentials

Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.