Website profile

@Thepracticaldev

A constructive and inclusive social network for software developers. With you every step of your journey.

  • 10,413articles · 30d
  • 7+ hour agolatest article
  • Aug 15, 2026earliest in window
  • 97%with images
  • 292avg words
articles per day
Categories
  • Software Dev. 9,616
  • Science & Technology 9,497
  • Computers & Electronics 7,394
  • Business & Industrial 795
  • Internet & Telecom 757
  • Economy, Business & Finance 389
  • Finance 331
  • Arts, Culture, Entertainment & Media 232

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

DEV Community
dev.to > coridev > sk-1234-is-not-a-secret-its-a-docs-example-and-10-of-you-shipped-it-anyway-374h

sk-1234 Is Not a Secret, It's a Docs Example, and 10% of You Shipped It Anyway

1+ day, 5+ hour ago   (325+ words) Nearly one in ten internet-facing LiteLLM gateways were running with the literal example admin key from the documentation still active. Not a weak key. Not a leaked key. The key that's printed in tutorials, sk-1234, sitting wide open on the…...

DEV Community
dev.to > keymelgaston > missing-rls-the-most-underrated-breach-cause-of-2026-1o4a

Missing RLS: The Most Underrated Breach Cause of 2026

1+ day, 16+ hour ago   (584+ words) You know why there are so many breaches in databases? Perfect, me neither. Let's find out in a few minutes. Everyone worries about encryption. Almost nobody worries enough about the one thing that's actually been breaking production databases all year:…...

DEV Community
dev.to > sarantoon > chatgpt-was-used-as-a-hidden-channel-to-pull-gmail-data-across-accounts-j5i

ChatGPT Was Used as a Hidden Channel to Pull Gmail Data Across Accounts

2+ day, 9+ hour ago   (703+ words) By Nokka | September 11, 2026 Security researchers at Check Point found a flaw in ChatGPT that let an attacker pull data from a victim's Gmail through a hidden channel between supposedly isolated user accounts [1]. OpenAI has fixed it and shut down the…...

DEV Community
dev.to > aniketsoni > is-your-data-lakehouse-actually-a-hipaa-liability-18jm

Is your Data Lakehouse actually a HIPAA liability?

2+ day, 10+ hour ago   (175+ words) Ninety-two percent of healthcare data breaches occur because of misconfigurations in the storage... Tagged with data, security, healthcare, engineering....

DEV Community
dev.to > serguey_shinder_4ab9b87b1 > most-breaches-arent-clever-theyre-boring-3md5

Most Breaches Aren't Clever. They're Boring.

2+ week, 3+ day ago   (275+ words) When people picture a breach, they picture something cinematic. A hooded figure, custom malware, a zero-day nobody's ever seen. It makes for good television. It's almost never what actually happens. The real breaches are painfully boring. An employee reused a…...

DEV Community
dev.to > jamilxt > 1200-sandboxed-ai-agents-hacked-hugging-face-your-agent-stack-needs-these-8-defenses-4da8

1,200 Sandboxed AI Agents Hacked Hugging Face. Your Agent Stack Needs These 8 Defenses

2+ week, 3+ day ago   (430+ words) Two reports dropped this week that I think every developer running AI agents needs to read: OpenAI's postmortem of the Hugging Face security incident, and an independent investigation by METR and Redwood Research. I spent my morning commute and a…...

DEV Community
dev.to > anoymask > nearly-700-rogue-ai-agents-coordinated-in-the-hugging-face-attack-lateral-movement-from-2aoo

Nearly 700 Rogue AI Agents Coordinated in the Hugging Face Attack: Lateral Movement from Artifactory Across Multiple Regions

2+ week, 3+ day ago   (1430+ words) 1. Basic Information Article Title: Nearly 700 rogue AI agents coordinated in the Hugging Face attack Publisher: BleepingComputer / OpenAI Publication Date: 2026-08-27 Original Source: BleepingComputer Related Sources: OpenAI incident report, OpenAI technical report, SecurityWeek Related Malware, Attack Groups, CVEs, and Products: Nearly 700 autonomous…...

DEV Community
dev.to > passwork_team_fd7bbec6480 > ibms-2026-breach-report-5-security-controls-engineering-teams-should-review-2p17

IBM’s 2026 breach report: 5 security controls engineering teams should review

2+ week, 6+ day ago   (1414+ words) IBM’s 2026 Cost of a Data Breach Report (wich was published in July'26) contains a number that caught the Passwork team’s attention: AI-enabled attacks now account for more than one in four malicious breaches, up 56% year over year. The average cost…...

DEV Community
dev.to > mahavault > what-happens-if-your-password-managers-master-password-is-compromised-3k3h

What Happens If Your Password Manager’s Master Password Is Compromised?

3+ week, 5+ day ago   (688+ words) A password manager is supposed to protect all your passwords behind one master password. That creates an important security question: What happens if someone gets your master password? The answer depends on how the password manager is designed. That means…...

DEV Community
dev.to > satyam_rastogi > azure-data-theft-campaign-f500-breach-anatomy-operator-ttps-3oho

Azure Data Theft Campaign: F500 Breach Anatomy & Operator TTPs

4+ week, 2+ hour ago   (201+ words) Threat actors claiming millions of records from Fortune 500 companies via Azure infrastructure compromise. Analysis of attack chain, credential harvesting, and defensive gaps exploited by operators. Based on targeting patterns and scale, initial compromise likely followed one of three vectors: 1. Service…...