DZone
Thanks for visiting DZone today,
Edit Profile
  • Manage Email Subscriptions
  • How to Post to DZone
  • Article Submission Guidelines
Sign Out View Profile
  • Post an Article
  • Manage My Drafts
Newsletter
Log In / Join
Refcards Trend Reports
Events Video Library
Refcards
Trend Reports

Events

View Events Video Library

The Latest Security Topics

article thumbnail
How to Secure Secrets in CI/CD Pipelines
CI/CD pipelines are essential, but they carry risks if not designed correctly. This post discusses common security mistakes and shares practices to avoid them.
May 11, 2026
by Sandeep Kumar Khandelwal
· 2,071 Views · 2 Likes
article thumbnail
Identity Security in the Age of Agentic AI: What Engineers Need to Know
A practical guide to why traditional identity systems break with agentic AI, and what engineers need to architect differently.
May 7, 2026
by Ashly Joseph
· 2,410 Views · 2 Likes
article thumbnail
Securing CI/CD Pipelines Against Supply Chain Attacks: Why Artifacts and Dependencies Matter More Than Ever
This article explains how placing the right security controls turns CI/CD from an implicit trust engine into a verifiable delivery system.
May 7, 2026
by Ifeoma Eleweke
· 2,695 Views · 1 Like
article thumbnail
Why AI Forces a Rethink of Everything We Know About Software Security
AI-driven development expands attack surfaces; this article shows how continuous security, zero trust, and runtime enforcement scale DevSecOps in AI pipelines.
May 7, 2026
by Apostolos Giannakidis DZone Core CORE
· 3,086 Views · 2 Likes
article thumbnail
Effective Engineering Feedback: Software Testing
Software testing is a feedback system that drives better decisions. Learn how effective feedback, CLEAR principles, and testing levels improve quality and teamwork.
May 6, 2026
by Stelios Manioudakis DZone Core CORE
· 6,362 Views · 1 Like
article thumbnail
Security in the Age of MCP: Preventing "Hallucinated Privilege"
Prevent prompt injection in AI agents: default to read-only, require human approval for changes, and authenticate every tool call with end-user zero-trust permissions.
May 6, 2026
by Nikita Kothari
· 2,673 Views
article thumbnail
Spring Boot Done Right: Lessons From a 400-Module Codebase
Apereo CAS is one of the largest open-source Spring Boot applications in production. Learn about seven battle-tested patterns from its codebase that will improve yours.
May 5, 2026
by Dmitriy Kopylenko
· 2,619 Views · 5 Likes
article thumbnail
Securing the IT and OT Boundary in Geospatial Enterprise Systems
Enterprise GIS platforms blend IT & OT, offering vital operational insight. To protect critical systems, secure the boundary with zero-trust principles and segmentation.
May 4, 2026
by Emily Newton
· 2,159 Views · 1 Like
article thumbnail
Why Playwright Gets Blocked After 200 Requests (And What To Do About It)
Playwright scrapers fail after 200 requests because anti-bot systems cross-reference browser fingerprints against network identity. CDP config and proxy fix.
May 1, 2026
by Josh Mellow
· 3,013 Views
article thumbnail
5 Layers of Prompt Injection Defense You Can Wire Into Any Node.js App
Regex-based input filtering alone won't stop prompt injection. This tutorial walks through a five-layer defense-in-depth strategy for Node.js apps.
April 30, 2026
by Raviteja Nekkalapu
· 2,924 Views
article thumbnail
Clean Code: Package Architecture, Dependency Flow, and Scalability, Part 4
Flat imports, internal for business logic, interfaces at the consumer side — your utils package is an architecture smell.
April 30, 2026
by Vladimir Yakovlev
· 2,189 Views · 1 Like
article thumbnail
Designing a Secure API From Day One
A startup builds API security from day one using identity, mTLS, validation, and automation — embedding defenses into architecture instead of reacting after failures.
April 28, 2026
by Igboanugo David Ugochukwu DZone Core CORE
· 2,285 Views
article thumbnail
Your AD Password Policies Are Security Theater
Active Directory password-complexity policies can be bypassed via certain password-set paths, rendering many common controls mere “security theater.”
April 28, 2026
by Alexei Belous
· 2,391 Views
article thumbnail
Implementing Security-First CI/CD: A Hands-On Guide to DevSecOps Automation
This guide shows how to build a secure CI/CD pipeline with early scanning, policy-as-code, SBOMs, zero trust, and safe AI-driven remediation in DevSecOps.
April 28, 2026
by Boris Zaikin DZone Core CORE
· 3,086 Views
article thumbnail
How AI Is Rewriting the Rules of Software Security: Machine-Speed Delivery, Shifting Risk, and New Control Points
AI-driven development expands attack surfaces; this article shows how continuous security, zero trust, and runtime enforcement scale DevSecOps in AI pipelines
April 27, 2026
by Apostolos Giannakidis DZone Core CORE
· 2,882 Views · 2 Likes
article thumbnail
Security Readiness Checklist: From AI Threats to Software Supply Chain Defense
Detect APTs with behavioral analytics and log correlation, building baselines and linking events to turn weak signals into actionable security detections.
April 27, 2026
by Akanksha Pathak DZone Core CORE
· 2,258 Views
article thumbnail
Treat PII as Toxic: Designing Secure Systems That Contain the Blast Radius
PII is toxic data. Design systems to isolate, encrypt, restrict access, and minimize breach impact by containing the blast radius.
April 27, 2026
by Satyam Nikhra
· 2,066 Views
article thumbnail
Preventing Prompt Injection by Design: A Structural Approach in Java
AI Query Layer lets you run safe, schema-validated AI queries with LLMs, managing inputs and outputs efficiently for finance, analytics, and apps.
April 24, 2026
by suman Baatth
· 4,157 Views · 4 Likes
article thumbnail
Understanding the Shifting Protocols That Secure AI Agents
AI protocols are being adopted faster than security teams can assess them. Learn agentic protocol basics, their maturity levels, and when to implement them.
April 24, 2026
by Meir Wahnon
· 3,020 Views · 2 Likes
article thumbnail
AWS vs GCP Security: Best Practices for Protecting Infrastructure, Data, and Networks
A practical guide to securing AWS and GCP using IAM, encryption, network controls, and continuous monitoring to help improve resilience on the cloud.
April 24, 2026
by Kadir Arslan
· 2,841 Views
  • Previous
  • ...
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • ...
  • Next
  • RSS
  • X
  • Facebook

ABOUT US

  • About DZone
  • Support and feedback
  • Community research

ADVERTISE

  • Advertise with DZone

CONTRIBUTE ON DZONE

  • Article Submission Guidelines
  • Become a Contributor
  • Core Program
  • Visit the Writers' Zone

LEGAL

  • Terms of Service
  • Privacy Policy

CONTACT US

  • 3343 Perimeter Hill Drive
  • Suite 215
  • Nashville, TN 37211
  • [email protected]

Let's be friends:

  • RSS
  • X
  • Facebook
×