DZone
Thanks for visiting DZone today,
Edit Profile
  • Manage Email Subscriptions
  • How to Post to DZone
  • Article Submission Guidelines
Sign Out View Profile
  • Post an Article
  • Manage My Drafts
Over 2 million developers have joined DZone.
Log In / Join
Refcards Trend Reports
Events Video Library
Refcards
Trend Reports

Events

View Events Video Library

The Latest Security Topics

article thumbnail
Securing Model Context Protocol Servers: 4 Gates From Code to Production
Secure MCP servers against prompt injection, data leaks, and denial-of-wallet with four practical, OWASP-aligned gates from code to production. Runnable code.
July 24, 2026
by Viquar Khan
· 3,769 Views · 2 Likes
article thumbnail
The Rise of Agentic SRE: Humans, Agents, and Reliability
Agentic SRE speeds up incident response, but it also requires clear guardrails, strong observability, and human oversight.
July 23, 2026
by Neel Shah
· 4,207 Views · 1 Like
article thumbnail
Why AI-Generated Code Fails Security Reviews 45% of the Time
AI coding tools produce security flaws in 45% of outputs, yet developers trust the code more despite no security gains in two years.
July 23, 2026
by sunil paidi
· 2,958 Views
article thumbnail
Refresh Token Rotation in Node.js: Stopping Token Theft Without Logging Users Out
Implementing refresh token rotation with reuse detection, a pattern that limits the damage of a stolen token while keeping legitimate users logged in.
July 22, 2026
by Bilal Azam
· 2,409 Views
article thumbnail
Hardening MCP Gateways: Mitigating July 28 Security Risks in Java Applications
The latest MCP updates introduce security risks like protocol confusion. Quarkus mitigates these vectors using strict request filtering and enterprise security layers.
July 21, 2026
by Daniel Oh DZone Core CORE
· 3,187 Views
article thumbnail
Why Do Some Proxies Work Fine for Search But Fail Once You Start Filtering Results?
Root searches are cached and easy to access. Filtering forces requests to hit the backend database directly, triggering stricter anti-bot checks that block basic proxies.
July 21, 2026
by xiyun chen
· 2,394 Views
article thumbnail
Scaling Row-Level Security With ABAC on Databricks Unity Catalog
Learn how to scale row-level security in Databricks Unity Catalog using a tag-driven ABAC pattern that reduces maintenance and simplifies onboarding.
July 20, 2026
by Sriram Vadlamani
· 2,485 Views
article thumbnail
Fix Circular Dependencies in PostgreSQL Row-Level Security With SECURITY DEFINER Functions
Circular RLS policy dependencies in PostgreSQL silently return no rows. Here is why it happens and how SECURITY DEFINER functions fix it.
July 20, 2026
by Lex Mulier
· 2,219 Views · 1 Like
article thumbnail
Security Is a Platform Property, Not a Pipeline Step
Security works best when it is built into the platform: Terraform guardrails, CI/CD checks, and golden path templates make secure delivery the default.
July 20, 2026
by Naveen Kalapala
· 2,417 Views
article thumbnail
The Agent Security Split: Tool Layer vs Sandbox Layer
Why enterprise agent security requires decoupling the tool layer from the sandbox layer, and how the helmdeck + NVIDIA OpenShell architecture enforces it.
July 20, 2026
by Tosin Akinosho
· 1,759 Views
article thumbnail
Every SOC Today Is Answering the Wrong Question
Rethink SOC architecture with Continuous Evidence Graphs that connect identities, sessions, and resources instead of relying on alert timelines.
July 17, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 2,999 Views
article thumbnail
Your Agent Trusts That Wiki. Should It?
AI agents need more than execution correctness. Instruction provenance must be a first-class security property before privileged actions are trusted.
July 16, 2026
by Abhinav Srivastava
· 4,251 Views
article thumbnail
12 Factor Framework for Building Secure and Compliant Cloud Applications
Learn how a practical 12-factor framework embeds security, compliance, resilience, and governance into cloud-native applications.
July 14, 2026
by Josephine Eskaline Joyce DZone Core CORE
· 3,049 Views · 3 Likes
article thumbnail
Implementing Zero-Trust Networking and Identity for Microsoft Foundry Agents
This article explains how to implement a zero-trust security architecture for Microsoft Foundry agents by combining identity-first authentication.
July 13, 2026
by Jubin Soni, FBCS DZone Core CORE
· 1,859 Views
article thumbnail
Machine Identity Debt: Why Human Identity Is No Longer Cloud Security's Primary Boundary
Machine identities now outnumber human ones in cloud environments. Learn how to secure workloads with modern identity governance and trust.
July 13, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 6,533 Views · 1 Like
article thumbnail
Goodbye, Skeleton Keys: Why Machine Identity Broke IAM, and What SPIFFE Is Doing About It
The Salesloft Drift breach showed why machine identity has outgrown IAM. Here’s how SPIFFE can reduce token sprawl and trust risk.
July 13, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 2,894 Views
article thumbnail
AI Can't Defend What It Can't See
AI can only defend what it can see. Give it incomplete data, and it won't warn you. It quietly reports everything as healthy while real attacks slip through unseen.
July 7, 2026
by Jithu Paulose
· 2,376 Views · 2 Likes
article thumbnail
Prompt Injection Attacks and Hidden Security Risks in LLM Applications
Prompt injection hijacks an LLM by exploiting its inability to separate data from commands. Direct and indirect attacks require layered defenses, not one fix.
July 3, 2026
by Karini Kapoor
· 2,975 Views · 2 Likes
article thumbnail
Identity Was Never the Real Problem. Intent Is — and Almost Nobody Is Building For It Yet
Machine identity didn't fail in recent breaches — authorization did. Learn how intent-bound access with RFC 9396 and CAE can reduce AI security risk.
July 2, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 3,451 Views · 1 Like
article thumbnail
One Stolen Key, One Stolen Token: Why Machine Identity Is Cloud-Native's Quietest Crisis — and the Only Fix That Actually Holds
Learn how stolen machine credentials fuel major cloud breaches and how policy-as-code and short-lived identities help stop modern attacks.
July 1, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 3,794 Views
  • Previous
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • ...
  • Next
  • RSS
  • X
  • Facebook

ABOUT US

  • About DZone
  • Support and feedback
  • Community research

ADVERTISE

  • Advertise with DZone

CONTRIBUTE ON DZONE

  • Article Submission Guidelines
  • Become a Contributor
  • Core Program
  • Visit the Writers' Zone

LEGAL

  • Terms of Service
  • Privacy Policy

CONTACT US

  • 3343 Perimeter Hill Drive
  • Suite 215
  • Nashville, TN 37211
  • [email protected]

Let's be friends:

  • RSS
  • X
  • Facebook
×