⤷ Title: SQL Injection Still Works in 2025: How We Found 12 Vulnerabilities in Our Own Code
════════════════════════
𐀪 Author: Erwin Hermanto
════════════════════════
ⴵ Time: Mon, 29 Jun 2026 02:22:57 GMT
════════════════════════
⌗ Tags: #golang #sqli #security #backend_development #software_engineering
════════════════════════
𐀪 Author: Erwin Hermanto
════════════════════════
ⴵ Time: Mon, 29 Jun 2026 02:22:57 GMT
════════════════════════
⌗ Tags: #golang #sqli #security #backend_development #software_engineering
⤷ Title: How Spring Data JPA Protects You from SQL Injection Without You Knowing
════════════════════════
𐀪 Author: Najee Shaheen
════════════════════════
ⴵ Time: Tue, 30 Jun 2026 09:24:52 GMT
════════════════════════
⌗ Tags: #spring_boot #backend_development #sql_injection #java #cybersecurity
════════════════════════
𐀪 Author: Najee Shaheen
════════════════════════
ⴵ Time: Tue, 30 Jun 2026 09:24:52 GMT
════════════════════════
⌗ Tags: #spring_boot #backend_development #sql_injection #java #cybersecurity
Medium
How Spring Data JPA Protects You from SQL Injection Without You Knowing
SQL injection has been a known vulnerability for 25 years, and we’re not making good progress at preventing it.
⤷ Title: Backend Security: Everything You Need to Know
════════════════════════
𐀪 Author: Shubham Salunkhe
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 18:24:31 GMT
════════════════════════
⌗ Tags: #sql_injection #security #backend_development #web_development #software_development
════════════════════════
𐀪 Author: Shubham Salunkhe
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 18:24:31 GMT
════════════════════════
⌗ Tags: #sql_injection #security #backend_development #web_development #software_development
Medium
Backend Security: Everything You Need to Know
After learning HTTP, Routing, Authentication, Databases, Caching, Task Queues, Scaling, and Observability, I finally reached what is…
⤷ Title: Django REST Framework’te JWT Güvenliği: Access Token, Refresh Token, HttpOnly Cookie
════════════════════════
𐀪 Author: Sümeyye Karataş
════════════════════════
ⴵ Time: Mon, 13 Jul 2026 07:29:14 GMT
════════════════════════
⌗ Tags: #jwt #api_security #django_rest_framework #django #backend_development
════════════════════════
𐀪 Author: Sümeyye Karataş
════════════════════════
ⴵ Time: Mon, 13 Jul 2026 07:29:14 GMT
════════════════════════
⌗ Tags: #jwt #api_security #django_rest_framework #django #backend_development
Medium
Django REST Framework’te JWT Güvenliği: Access Token, Refresh Token, HttpOnly Cookie
Giriş: JWT sadece login endpoint’i değildir.
⤷ Title: Understanding JWT Authentication: From Session-Based Authentication to Secure Token-Based Systems
════════════════════════
𐀪 Author: Anonymous_User
════════════════════════
ⴵ Time: Tue, 14 Jul 2026 05:57:14 GMT
════════════════════════
⌗ Tags: #technology #backend_development #security #hacking #information_security
════════════════════════
𐀪 Author: Anonymous_User
════════════════════════
ⴵ Time: Tue, 14 Jul 2026 05:57:14 GMT
════════════════════════
⌗ Tags: #technology #backend_development #security #hacking #information_security
Medium
Understanding JWT Authentication: From Session-Based Authentication to Secure Token-Based Systems
The Problem with Session-Based Authentication
⤷ Title: The Code Was Fine. The Access Model Was Not.
════════════════════════
𐀪 Author: Shiki65536@TechRoamer
════════════════════════
ⴵ Time: Sun, 19 Jul 2026 09:05:37 GMT
════════════════════════
⌗ Tags: #application_security #postgresql #database_security #backend_development #supabase
════════════════════════
𐀪 Author: Shiki65536@TechRoamer
════════════════════════
ⴵ Time: Sun, 19 Jul 2026 09:05:37 GMT
════════════════════════
⌗ Tags: #application_security #postgresql #database_security #backend_development #supabase
Medium
The Code Was Fine. The Access Model Was Not.
This week, Supabase flagged several backend tables with: RLS Disabled in Public.
⤷ Title: Session Hijacking & Injection
════════════════════════
𐀪 Author: Shofa
════════════════════════
ⴵ Time: Tue, 21 Jul 2026 04:12:55 GMT
════════════════════════
⌗ Tags: #front_end_development #web_security #sql_injection #backend_development #web_development
════════════════════════
𐀪 Author: Shofa
════════════════════════
ⴵ Time: Tue, 21 Jul 2026 04:12:55 GMT
════════════════════════
⌗ Tags: #front_end_development #web_security #sql_injection #backend_development #web_development
Medium
Session Hijacking & Injection
Not every security vulnerability requires advanced hacking skills.
⤷ Title: When ‘Internal’ Isn’t Safe: Splunk CVE-2026–20253
════════════════════════
𐀪 Author: Ridhi Gupta
════════════════════════
ⴵ Time: Tue, 21 Jul 2026 22:05:30 GMT
════════════════════════
⌗ Tags: #backend_development #vulnerability #splunk #application_security #cybersecurity
════════════════════════
𐀪 Author: Ridhi Gupta
════════════════════════
ⴵ Time: Tue, 21 Jul 2026 22:05:30 GMT
════════════════════════
⌗ Tags: #backend_development #vulnerability #splunk #application_security #cybersecurity
Medium
When ‘Internal’ Isn’t Safe: Splunk CVE-2026–20253
Being “internal” doesn’t mean being safe.
⤷ Title: How Webhooks Actually Work: The Endpoint That Trusts Whoever Talks to It First
════════════════════════
𐀪 Author: Anas Issath
════════════════════════
ⴵ Time: Wed, 22 Jul 2026 15:45:53 GMT
════════════════════════
⌗ Tags: #webhooks #design_systems #python_programming #api_security #backend_development
════════════════════════
𐀪 Author: Anas Issath
════════════════════════
ⴵ Time: Wed, 22 Jul 2026 15:45:53 GMT
════════════════════════
⌗ Tags: #webhooks #design_systems #python_programming #api_security #backend_development
Medium
How Webhooks Actually Work: The Endpoint That Trusts Whoever Talks to It First
A webhook is just a URL that believes whatever hits it. In 2023, that single assumption let attackers fake payment confirmations at a…
⤷ Title: How Can You Simplify API Authentication Without Sacrificing Security?
════════════════════════
𐀪 Author: The Unmeshed Team
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 05:15:43 GMT
════════════════════════
⌗ Tags: #authentication #workflow #backend_development #api_security #orchestration
════════════════════════
𐀪 Author: The Unmeshed Team
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 05:15:43 GMT
════════════════════════
⌗ Tags: #authentication #workflow #backend_development #api_security #orchestration
Medium
How Can You Simplify API Authentication Without Sacrificing Security?
Authentication is the backbone of secure and efficient API execution; it is the first layer of protection for real-time use cases where…
⤷ Title: Security Thinking from Day One — Why AI-generated applications increase risk surfaces
════════════════════════
𐀪 Author: Mark W.
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 08:58:25 GMT
════════════════════════
⌗ Tags: #secure_coding #backend_development #cybersecurity #artificial_intelligence #application_security
════════════════════════
𐀪 Author: Mark W.
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 08:58:25 GMT
════════════════════════
⌗ Tags: #secure_coding #backend_development #cybersecurity #artificial_intelligence #application_security
Medium
Security Thinking from Day One — Why AI-generated applications increase risk surfaces
From years spent shipping complex systems, I’ve seen firsthand how crucial context is to AI-generated code security. AI code generators are…
⤷ Title: Your Auth Middleware Is Too Late. Here’s What Should Run Before It.
════════════════════════
𐀪 Author: Yoosuf Husain
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 13:51:35 GMT
════════════════════════
⌗ Tags: #backend_development #api_security #engineering #nodejs #software_architecture
════════════════════════
𐀪 Author: Yoosuf Husain
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 13:51:35 GMT
════════════════════════
⌗ Tags: #backend_development #api_security #engineering #nodejs #software_architecture
Medium
Your Auth Middleware Is Too Late. Here’s What Should Run Before It.
Most Node.js apps have an auth middleware. You write a protect function, drop it on your routes and call it done. That works fine until you…
⤷ Title: Why Your API Can Still Crash Despite Rate Limiting: What Most Developers Miss
════════════════════════
𐀪 Author: Hafiz Muhammad Asad
════════════════════════
ⴵ Time: Wed, 05 Aug 2026 15:53:22 GMT
════════════════════════
⌗ Tags: #cybersecurity #backend_development #api_security #software_architecture #api_rate_limiting
════════════════════════
𐀪 Author: Hafiz Muhammad Asad
════════════════════════
ⴵ Time: Wed, 05 Aug 2026 15:53:22 GMT
════════════════════════
⌗ Tags: #cybersecurity #backend_development #api_security #software_architecture #api_rate_limiting
Medium
Why Your API Can Still Crash Despite Rate Limiting: What Most Developers Miss
Rate limiting is one of the first security mechanisms developers implement. Yet APIs still go down every day because modern attackers know…
⤷ Title: Locking the Front Door: How We Secured a Partner API Before Publishing It
════════════════════════
𐀪 Author: MUKKU CHANDRASEKHAR REDDY
════════════════════════
ⴵ Time: Sat, 08 Aug 2026 11:45:26 GMT
════════════════════════
⌗ Tags: #azure #tlm #backend_development #api #api_security
════════════════════════
𐀪 Author: MUKKU CHANDRASEKHAR REDDY
════════════════════════
ⴵ Time: Sat, 08 Aug 2026 11:45:26 GMT
════════════════════════
⌗ Tags: #azure #tlm #backend_development #api #api_security
Medium
Locking the Front Door: How We Secured a Partner API Before Publishing It
An internal API has an easy life. It sits inside a private network, and only our own services call it. Nobody outside the company can reach…