DEV Community

#vulnerabilities

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Benchmarking GPT-4o, Claude 3.5 Sonnet, and Llama 3 for Automated Code Auditing & Vulnerability Detection

Benchmarking GPT-4o, Claude 3.5 Sonnet, and Llama 3 for Automated Code Auditing & Vulnerability Detection

Comments
2 min read
RefluXFS (CVE-2026-64600): A Deep Dive into the Linux XFS Vulnerability That Lets Local Users Become Root

RefluXFS (CVE-2026-64600): A Deep Dive into the Linux XFS Vulnerability That Lets Local Users Become Root

1
Comments
5 min read
I scanned 8,764 MCP servers for security vulnerabilities — here's what I found

I scanned 8,764 MCP servers for security vulnerabilities — here's what I found

Comments
3 min read
30 CVEs filed against MCP servers in 60 days — here's how we're fixing this

30 CVEs filed against MCP servers in 60 days — here's how we're fixing this

Comments
2 min read
Shai-Hulud Strikes Back: Keyv, Cacheable & 800+ npm Packages Hijacked in Massive Worm Attack

Shai-Hulud Strikes Back: Keyv, Cacheable & 800+ npm Packages Hijacked in Massive Worm Attack

Comments 3
5 min read
Vulnerability Management is a Workaround for a Missing Call Graph

Vulnerability Management is a Workaround for a Missing Call Graph

Comments 2
12 min read
Inside the CVE List: How Vulnerabilities Get Their ID Cards

Inside the CVE List: How Vulnerabilities Get Their ID Cards

Comments
1 min read
What I found when I security-scanned 10 AI-built apps (and how to check yours manually)

What I found when I security-scanned 10 AI-built apps (and how to check yours manually)

Comments
4 min read
Windows and Linux Sensitive Directory Path Summary

Windows and Linux Sensitive Directory Path Summary

6
Comments
5 min read
Go-go Gadget...OSV!

Go-go Gadget...OSV!

Comments
1 min read
PamStealer: the macOS stealer that checks your password through PAM before stealing it

PamStealer: the macOS stealer that checks your password through PAM before stealing it

1
Comments 2
5 min read
Why CVSS Alone Doesn't Tell You What to Patch First (And How KEV + EPSS Changes Everything)

Why CVSS Alone Doesn't Tell You What to Patch First (And How KEV + EPSS Changes Everything)

1
Comments
5 min read
Architectural Collapse: How Extension Poisoning, Node Vulnerabilities, and Infrastructure Fog Enabled the GitHub Repository Breach

Architectural Collapse: How Extension Poisoning, Node Vulnerabilities, and Infrastructure Fog Enabled the GitHub Repository Breach

Comments
5 min read
Symlink races and a client-controlled auth header in OpenClaw

Symlink races and a client-controlled auth header in OpenClaw

Comments
1 min read
How to Audit Your AI Agent Skills for Credential Exposure and Malicious Instructions

How to Audit Your AI Agent Skills for Credential Exposure and Malicious Instructions

1
Comments 1
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.