DZone
Thanks for visiting DZone today,
Edit Profile
  • Manage Email Subscriptions
  • How to Post to DZone
  • Article Submission Guidelines
Sign Out View Profile
  • Post an Article
  • Manage My Drafts
Over 2 million developers have joined DZone.
Log In / Join
Refcards Trend Reports
Events Video Library
Refcards
Trend Reports

Events

View Events Video Library

The Latest Security Topics

article thumbnail
Machine Identity Debt: Why Human Identity Is No Longer Cloud Security's Primary Boundary
Machine identities now outnumber human ones in cloud environments. Learn how to secure workloads with modern identity governance and trust.
July 13, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 6,358 Views
article thumbnail
Goodbye, Skeleton Keys: Why Machine Identity Broke IAM, and What SPIFFE Is Doing About It
The Salesloft Drift breach showed why machine identity has outgrown IAM. Here’s how SPIFFE can reduce token sprawl and trust risk.
July 13, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 2,841 Views
article thumbnail
AI Can't Defend What It Can't See
AI can only defend what it can see. Give it incomplete data, and it won't warn you. It quietly reports everything as healthy while real attacks slip through unseen.
July 7, 2026
by Jithu Paulose
· 2,332 Views · 2 Likes
article thumbnail
Prompt Injection Attacks and Hidden Security Risks in LLM Applications
Prompt injection hijacks an LLM by exploiting its inability to separate data from commands. Direct and indirect attacks require layered defenses, not one fix.
July 3, 2026
by Karini Kapoor
· 2,709 Views · 2 Likes
article thumbnail
Identity Was Never the Real Problem. Intent Is — and Almost Nobody Is Building For It Yet
Machine identity didn't fail in recent breaches — authorization did. Learn how intent-bound access with RFC 9396 and CAE can reduce AI security risk.
July 2, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 3,392 Views · 1 Like
article thumbnail
One Stolen Key, One Stolen Token: Why Machine Identity Is Cloud-Native's Quietest Crisis — and the Only Fix That Actually Holds
Learn how stolen machine credentials fuel major cloud breaches and how policy-as-code and short-lived identities help stop modern attacks.
July 1, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 3,543 Views
article thumbnail
Can Rust Have Zero-Cost Dependency Injection?
This article explains compile-time dependency injection in Rust without reflection, runtime containers, dyn, Arc, Rc, or runtime resolution overhead.
July 1, 2026
by Dmytro Brazhnyk
· 2,145 Views
article thumbnail
An Ingredient List Doesn't Stop the Worm: What SBOMs Can and Can't Do
An SBOM alone can't stop supply chain attacks. Learn why software signing, provenance, and deployment verification are essential for secure releases.
June 30, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 1,592 Views
article thumbnail
The New Insider Threat Isn't Human: Securing AI Agents Before They Secure Themselves
AI agents are becoming powerful insiders. Learn how identity, MCP security, least privilege, and policy enforcement reduce emerging risks.
June 26, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 2,101 Views · 1 Like
article thumbnail
Two Clocks Are Running Out at Once, and Almost Nobody Is Watching Both
Quantum computing and AI coding tools are changing security. Learn why crypto-agility and better governance are now critical.
June 26, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 2,169 Views · 2 Likes
article thumbnail
Sharing SBOMs Securely Without Giving Too Much Away
SBOMs improve software supply chain transparency, but sharing them carelessly creates risk. Learn how controlled disclosure balances trust and security.
June 25, 2026
by Sven Ruppert DZone Core CORE
· 1,932 Views · 1 Like
article thumbnail
Your Biggest Identity Problem Isn't Your Employees Anymore; It's Everything Else
Machine identities are now the primary attack surface. Learn how Zero Trust, SPIFFE, and IAM automation help secure them.
June 24, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 1,845 Views · 1 Like
article thumbnail
AI, OAuth, and Other Platform APIs in the Core
Deeper AI integration in the framework core, modern authentication via OAuth / OIDC and WebAuthn passkeys driven from the system browser, and a few smaller additions.
June 24, 2026
by Shai Almog DZone Core CORE
· 1,932 Views · 1 Like
article thumbnail
Implementing Asynchronous Communication Between Microservices Using Kafka and Spring Boot
Kafka decouples services, buffers spikes, and routes failures to a DLT. Schemas are contracts; consumers must be idempotent.
June 24, 2026
by Mallikharjuna Manepalli
· 3,151 Views · 1 Like
article thumbnail
Architectural Collapse: How Extension Poisoning, Node Vulnerabilities, and Infrastructure Fog Enabled the GitHub Repository Breach
A major GitHub breach showed how extension poisoning, Node ecosystem weaknesses, and insecure developer workstations can bypass traditional security defenses.
June 23, 2026
by Akash Lomas
· 3,146 Views · 1 Like
article thumbnail
Phantom APIs Are Eating Your Attack Surface, and Most Security Teams Are Still Looking the Other Way
Undocumented phantom APIs are creating hidden security risks. Learn how AI-generated endpoints evade reviews and expand attack surfaces.
June 23, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 2,076 Views
article thumbnail
The Breach Was Never at the Door
OAuth tokens and AI agents can bypass traditional security. Learn from Microsoft and Salesloft breaches why behavioral monitoring matters.
June 23, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 1,720 Views
article thumbnail
Data Governance Checklist for AI-Driven Systems
A practical checklist for evaluating AI data readiness, covering data quality, governance, lineage, access controls, retrieval systems, and ongoing monitoring.
June 23, 2026
by Abhishek Gupta DZone Core CORE
· 1,552 Views · 2 Likes
article thumbnail
Testing Strategies for Web Development Code Generated by LLMs
LLMs can quickly generate web application code, but AI-written code may contain security vulnerabilities. This article reviews testing methods for LLM systems.
June 19, 2026
by Sandesh Basrur
· 2,312 Views · 1 Like
article thumbnail
AI Is Finding Bugs Faster Than Enterprises Can Patch — Here's What Data Security Teams Should Do
Three structural shifts enterprise data security teams should make in 2026, based on verifiable data and a decade of experience building protection products.
June 18, 2026
by Priyanka Neelakrishnan
· 1,853 Views · 1 Like
  • Previous
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • ...
  • Next
  • RSS
  • X
  • Facebook

ABOUT US

  • About DZone
  • Support and feedback
  • Community research

ADVERTISE

  • Advertise with DZone

CONTRIBUTE ON DZONE

  • Article Submission Guidelines
  • Become a Contributor
  • Core Program
  • Visit the Writers' Zone

LEGAL

  • Terms of Service
  • Privacy Policy

CONTACT US

  • 3343 Perimeter Hill Drive
  • Suite 215
  • Nashville, TN 37211
  • [email protected]

Let's be friends:

  • RSS
  • X
  • Facebook
×