DZone
Thanks for visiting DZone today,
Edit Profile
  • Manage Email Subscriptions
  • How to Post to DZone
  • Article Submission Guidelines
Sign Out View Profile
  • Post an Article
  • Manage My Drafts
Over 2 million developers have joined DZone.
Log In / Join
Refcards Trend Reports
Events Video Library
Refcards
Trend Reports

Events

View Events Video Library

The Latest Security Topics

article thumbnail
Context-Aware Authorization for AI Agents
Modern agentic AI systems introduce new security risks as LLMs act as privileged deputies, mapping threats to the Confused Deputy problem and proposing policy guardrails.
May 15, 2026
by Abhinav Srivastava
· 1,822 Views · 1 Like
article thumbnail
Your Identity Governance Is Lying to You
Legacy identity governance fails in modern cloud environments. Learn how event-driven, AI-assisted models improve access control and reduce security risks.
May 15, 2026
by Vishal Kumar Thedlapally
· 2,061 Views · 3 Likes
article thumbnail
The "Zombie API" Attack: Why Your Old Integrations Are Your Biggest Security Risk
Zombie APIs are forgotten, outdated endpoints left active but unmonitored, creating easy backdoors for hackers to steal sensitive data.
May 14, 2026
by Siddharth Jetly
· 2,409 Views · 1 Like
article thumbnail
Beyond Algorithms: The Human Element in AI-Driven Cybersecurity
AI is pushing cybersecurity from reactive defense to proactive intelligence — but human judgment, explainable AI, and ethical design remain essential.
May 14, 2026
by Vaishnavi Gudur
· 2,089 Views
article thumbnail
You Secured the Code. Did You Secure the Model?
AppSec focuses only on code, leaving AI supply chains exposed. Effective security embeds AI checks into workflows, scanning PRs and AI components continuously.
May 12, 2026
by Eran Kinsbruner
· 2,076 Views
article thumbnail
How to Secure Secrets in CI/CD Pipelines
CI/CD pipelines are essential, but they carry risks if not designed correctly. This post discusses common security mistakes and shares practices to avoid them.
May 11, 2026
by Sandeep Kumar Khandelwal
· 1,987 Views · 1 Like
article thumbnail
Identity Security in the Age of Agentic AI: What Engineers Need to Know
A practical guide to why traditional identity systems break with agentic AI, and what engineers need to architect differently.
May 7, 2026
by Ashly Joseph
· 2,321 Views · 1 Like
article thumbnail
Securing CI/CD Pipelines Against Supply Chain Attacks: Why Artifacts and Dependencies Matter More Than Ever
This article explains how placing the right security controls turns CI/CD from an implicit trust engine into a verifiable delivery system.
May 7, 2026
by Ifeoma Eleweke
· 2,633 Views
article thumbnail
Why AI Forces a Rethink of Everything We Know About Software Security
AI-driven development expands attack surfaces; this article shows how continuous security, zero trust, and runtime enforcement scale DevSecOps in AI pipelines.
May 7, 2026
by Apostolos Giannakidis DZone Core CORE
· 2,985 Views · 1 Like
article thumbnail
Effective Engineering Feedback: Software Testing
Software testing is a feedback system that drives better decisions. Learn how effective feedback, CLEAR principles, and testing levels improve quality and teamwork.
May 6, 2026
by Stelios Manioudakis DZone Core CORE
· 6,253 Views · 1 Like
article thumbnail
Security in the Age of MCP: Preventing "Hallucinated Privilege"
Prevent prompt injection in AI agents: default to read-only, require human approval for changes, and authenticate every tool call with end-user zero-trust permissions.
May 6, 2026
by Nikita Kothari
· 2,573 Views
article thumbnail
Spring Boot Done Right: Lessons From a 400-Module Codebase
Apereo CAS is one of the largest open-source Spring Boot applications in production. Learn about seven battle-tested patterns from its codebase that will improve yours.
May 5, 2026
by Dmitriy Kopylenko
· 2,551 Views · 5 Likes
article thumbnail
Securing the IT and OT Boundary in Geospatial Enterprise Systems
Enterprise GIS platforms blend IT & OT, offering vital operational insight. To protect critical systems, secure the boundary with zero-trust principles and segmentation.
May 4, 2026
by Emily Newton
· 2,098 Views · 1 Like
article thumbnail
Why Playwright Gets Blocked After 200 Requests (And What To Do About It)
Playwright scrapers fail after 200 requests because anti-bot systems cross-reference browser fingerprints against network identity. CDP config and proxy fix.
May 1, 2026
by Josh Mellow
· 2,917 Views
article thumbnail
5 Layers of Prompt Injection Defense You Can Wire Into Any Node.js App
Regex-based input filtering alone won't stop prompt injection. This tutorial walks through a five-layer defense-in-depth strategy for Node.js apps.
April 30, 2026
by Raviteja Nekkalapu
· 2,792 Views
article thumbnail
Clean Code: Package Architecture, Dependency Flow, and Scalability, Part 4
Flat imports, internal for business logic, interfaces at the consumer side — your utils package is an architecture smell.
April 30, 2026
by Vladimir Yakovlev
· 2,107 Views · 1 Like
article thumbnail
Designing a Secure API From Day One
A startup builds API security from day one using identity, mTLS, validation, and automation — embedding defenses into architecture instead of reacting after failures.
April 28, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 2,186 Views
article thumbnail
Your AD Password Policies Are Security Theater
Active Directory password-complexity policies can be bypassed via certain password-set paths, rendering many common controls mere “security theater.”
April 28, 2026
by Alexei Belous
· 2,314 Views
article thumbnail
Implementing Security-First CI/CD: A Hands-On Guide to DevSecOps Automation
This guide shows how to build a secure CI/CD pipeline with early scanning, policy-as-code, SBOMs, zero trust, and safe AI-driven remediation in DevSecOps.
April 28, 2026
by Boris Zaikin DZone Core CORE
· 2,910 Views
article thumbnail
How AI Is Rewriting the Rules of Software Security: Machine-Speed Delivery, Shifting Risk, and New Control Points
AI-driven development expands attack surfaces; this article shows how continuous security, zero trust, and runtime enforcement scale DevSecOps in AI pipelines
April 27, 2026
by Apostolos Giannakidis DZone Core CORE
· 2,735 Views · 2 Likes
  • Previous
  • ...
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • ...
  • Next
  • RSS
  • X
  • Facebook

ABOUT US

  • About DZone
  • Support and feedback
  • Community research

ADVERTISE

  • Advertise with DZone

CONTRIBUTE ON DZONE

  • Article Submission Guidelines
  • Become a Contributor
  • Core Program
  • Visit the Writers' Zone

LEGAL

  • Terms of Service
  • Privacy Policy

CONTACT US

  • 3343 Perimeter Hill Drive
  • Suite 215
  • Nashville, TN 37211
  • [email protected]

Let's be friends:

  • RSS
  • X
  • Facebook
×