DEV Community

# devsecops

Integrating security practices into the DevOps lifecycle.

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
How We Got a CISA GitHub Leak Taken Down in Under a Day

How We Got a CISA GitHub Leak Taken Down in Under a Day

Comments
2 min read
When Every PR Is a Rubber Stamp: What Automated Gates Catch That Exhausted Reviewers Miss

When Every PR Is a Rubber Stamp: What Automated Gates Catch That Exhausted Reviewers Miss

Comments
8 min read
🔐 SAST vs DAST: Complete Guide to Application Security Testing in DevSecOps

🔐 SAST vs DAST: Complete Guide to Application Security Testing in DevSecOps

Comments
2 min read
GitHub Got Breached Through a VS Code Extension. MCP Servers Are Next.

GitHub Got Breached Through a VS Code Extension. MCP Servers Are Next.

5
Comments 1
7 min read
10 Python modules, one dangerous pattern: How I found 13 critical vulnerabilities in an SDK

10 Python modules, one dangerous pattern: How I found 13 critical vulnerabilities in an SDK

Comments 1
2 min read
Snyk scans your MCP servers by running them. Here is what that means.

Snyk scans your MCP servers by running them. Here is what that means.

2
Comments
3 min read
DevOps Security Gaps in Startups: What Fast-Growing Teams Keep Getting Wrong

DevOps Security Gaps in Startups: What Fast-Growing Teams Keep Getting Wrong

Comments
3 min read
NemoClaw for the Enterprise: Matrix as the Communication Channel (Part 3)

NemoClaw for the Enterprise: Matrix as the Communication Channel (Part 3)

Comments
9 min read
Digital Signatures: The “Trust Me Bro” Detector for Junior Cybersecurity Engineers

Digital Signatures: The “Trust Me Bro” Detector for Junior Cybersecurity Engineers

Comments
7 min read
Secret Rotation: 3 Core Principles for Secure Applications

Secret Rotation: 3 Core Principles for Secure Applications

Comments
12 min read
We built a free open source alternative to Wiz for Azure — here is how it works

We built a free open source alternative to Wiz for Azure — here is how it works

Comments
3 min read
How I Discovered and Deobfuscated a Hidden PHP Backdoor on My Server

How I Discovered and Deobfuscated a Hidden PHP Backdoor on My Server

1
Comments
2 min read
Why LLM Engineering Is a Cloud Security Problem Nobody Is Talking About

Why LLM Engineering Is a Cloud Security Problem Nobody Is Talking About

Comments 1
1 min read
The TanStack Attack: How a Worm Slipped Through the npm Pipeline

The TanStack Attack: How a Worm Slipped Through the npm Pipeline

Comments
6 min read
What LucidShark Would Have Caught Before the TanStack Attack Landed

What LucidShark Would Have Caught Before the TanStack Attack Landed

Comments
7 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.
HTTPS · dev.to
← Home