✕ Clear all filters
56 articles
▶ Videos →

📰 Dev.to · Haven Messenger

56 articles · Updated every 3 hours · View all reads

All Articles 188,548Blog Posts 170,396Tech Tutorials 50,515Research Papers 36,766News 23,131 ⚡ AI Lessons
What 802.1X Actually Proves, and the Checkbox That Decides It
Dev.to · Haven Messenger 1mo ago
What 802.1X Actually Proves, and the Checkbox That Decides It
A company laptop joins the office network with the same credentials the user types into everything...
The Commit You Reverted Is Still There
Dev.to · Haven Messenger ☁️ DevOps & Cloud 1mo ago
The Commit You Reverted Is Still There
A credential goes into a config file during debugging. Six minutes later someone notices, commits a...
One Ciphertext, Two Valid Plaintexts: Why AEAD Needs Key Commitment
Dev.to · Haven Messenger 1mo ago
One Ciphertext, Two Valid Plaintexts: Why AEAD Needs Key Commitment
Modern encryption is almost always AEAD: authenticated encryption with associated data. AES-GCM and...
Ed25519 vs ECDSA: Why the Nonce Decides Everything
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 1mo ago
Ed25519 vs ECDSA: Why the Nonce Decides Everything
ECDSA and Ed25519 both sign data with elliptic curves, and both produce a 64-byte signature that...
Secrets in Git History: Why Deleting the File Does Not Help
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 1mo ago
Secrets in Git History: Why Deleting the File Does Not Help
A config file with a live API key goes in at 11pm. Someone notices at 9am, deletes the file, commits...
Perceptual Hashing: Matching Images That Are Not Identical
Dev.to · Haven Messenger 👁️ Computer Vision ⚡ AI Lesson 1mo ago
Perceptual Hashing: Matching Images That Are Not Identical
Every property that makes SHA-256 useful comes from one behaviour: flip a single bit of input and the...
Hash Collisions in Practice: Identical Prefix, Chosen Prefix, and What Broke
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 1mo ago
Hash Collisions in Practice: Identical Prefix, Chosen Prefix, and What Broke
MD5 was publicly broken in 2004. Certificate authorities were still signing with it in 2008, and a...
Root Store Programs: Who Decides Which Certificate Authorities Your Browser Trusts
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 2mo ago
Root Store Programs: Who Decides Which Certificate Authorities Your Browser Trusts
Every HTTPS connection rests on a question most people never think about: which certificate...
Encryption in the Browser: Why Web-Delivered Crypto Is a Different Trust Model
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 2mo ago
Encryption in the Browser: Why Web-Delivered Crypto Is a Different Trust Model
Two products can implement the same protocol, with the same key handling and the same audit report,...
KRACK: How WPA2 Wi-Fi Encryption Was Broken by Reusing a Key
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 2mo ago
KRACK: How WPA2 Wi-Fi Encryption Was Broken by Reusing a Key
In October 2017, researcher Mathy Vanhoef published an attack that broke WPA2, the encryption that...
The Terrapin Attack: How a Few Deleted Packets Weaken SSH
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 2mo ago
The Terrapin Attack: How a Few Deleted Packets Weaken SSH
SSH is the protocol most engineers trust without a second thought. Terrapin, disclosed in December...
Subdomain Takeover: When Dangling DNS Hands Your Domain to Strangers
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 2mo ago
Subdomain Takeover: When Dangling DNS Hands Your Domain to Strangers
A marketing team spins up a landing page on a cloud platform, points shop.example.com at it with a...
Off-the-Record Messaging: Where Deniable Encryption Started
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 2mo ago
Off-the-Record Messaging: Where Deniable Encryption Started
In 2004, three researchers published a paper with a pointed subtitle: "Why Not To Use PGP." Their...
Hybrid Post-Quantum TLS: How Your Browser Is Already Defending Against a Computer That Doesn't Exist Yet
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 2mo ago
Hybrid Post-Quantum TLS: How Your Browser Is Already Defending Against a Computer That Doesn't Exist Yet
A large quantum computer capable of running Shor's algorithm against the key sizes used on the...
The One-Time Pad: Provably Unbreakable, Almost Never Used
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 2mo ago
The One-Time Pad: Provably Unbreakable, Almost Never Used
Every cipher in daily use, AES included, is secure in the practical sense: nobody currently knows how...
TLS Interception: How Corporate Proxies Read Your Encrypted Traffic
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 2mo ago
TLS Interception: How Corporate Proxies Read Your Encrypted Traffic
The padlock in your browser tells you the connection is encrypted. It does not tell you who is on the...
SLSA Explained: The Levels That Prove Where Your Software Came From
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 2mo ago
SLSA Explained: The Levels That Prove Where Your Software Came From
In the SolarWinds attack, the malicious code was not smuggled past code review or slipped into the...
Wi-Fi Sensing: Your Router Is Becoming a Motion Detector
Dev.to · Haven Messenger 🛠️ AI Tools & Apps ⚡ AI Lesson 2mo ago
Wi-Fi Sensing: Your Router Is Becoming a Motion Detector
Every Wi-Fi transmission arrives at the receiver as a mess of overlapping reflections. The signal...
What Happens When You Let an AI Agent Read Your Inbox
Dev.to · Haven Messenger 🤖 AI Agents & Automation ⚡ AI Lesson 2mo ago
What Happens When You Let an AI Agent Read Your Inbox
Agentic browsers, the kind that summarize your inbox, draft replies, and click through checkout flows...
Cloud KMS and Bring-Your-Own-Key: What You're Actually Trusting
Dev.to · Haven Messenger 🔐 Cybersecurity ⚡ AI Lesson 2mo ago
Cloud KMS and Bring-Your-Own-Key: What You're Actually Trusting
Every major cloud provider sells a key management service, and most sell a "bring your own key"...