Articles: Security

Security concepts explained — encryption algorithms, hashing functions, password security, OAuth 2.0, web vulnerabilities, and the OWASP Top 10.

All Data Development Infrastructure Security

Learn & Tutorials: Security

security

What is Zero Trust Security?

A clear guide to Zero Trust security: the principles of never trust / always verify, micro-segmentation, identity-centric access, and practical implementation steps.

2026-07-20
security

What is Two-Factor Authentication?

A practical guide to two-factor authentication: how TOTP works, WebAuthn and passkeys, SMS vulnerabilities, and MFA implementation best practices.

2026-07-14
security

What is Single Sign-On?

A clear guide to Single Sign-On: how SSO works, SAML vs OpenID Connect, identity federation, and practical implementation considerations.

2026-07-08
security

Web Security for Developers: OWASP Top 10 and Beyond

A practical web security guide for developers: SQL injection, XSS, CSRF, SSRF, insecure auth, and OWASP Top 10 prevention techniques.

2026-06-29
security

SQL Injection Explained

A complete guide to SQL injection: how it works, types of SQLi attacks, prevention with parameterized queries, ORM considerations, and layered defenses.

2026-06-20
security

OAuth 2.0 and JWT: Authentication and Authorisation Explained

A practical guide to OAuth 2.0 and JWT: flows, token structure, verification, refresh tokens, scopes, and common security mistakes.

2026-06-11
security

MD5 vs SHA: Understanding Cryptographic Hash Functions

A deep dive into cryptographic hash functions: MD5 vs SHA-1 vs SHA-256, hash collisions, rainbow tables, salting, HMAC, and bcrypt for passwords.

2026-06-02
security

How VPNs Work

A developer-friendly guide to VPNs: how tunneling works, encryption protocols, WireGuard vs OpenVPN, split tunneling, and practical use cases.

2026-05-21
security

How HTTPS Works: TLS, Certificates, and Encryption Explained

A clear explanation of HTTPS: how TLS works, what SSL certificates do, and why every site needs HTTPS.

2026-05-09
security

Encoding vs Encryption vs Hashing: Key Differences Explained

A clear breakdown of encoding, encryption, and hashing: what they are, how they differ, when to use each, and the mistakes developers make by confusing them.

2026-04-27
security

The Developer's Guide to Password Security

A developer's guide to password security: proper hashing with bcrypt and Argon2, entropy, secrets management, API key generation, and common mistakes to avoid.

2026-04-15
security

Cross-Site Scripting (XSS) Explained

A comprehensive guide to Cross-Site Scripting: how XSS works, the three types of XSS, prevention with output encoding and CSP, and common mistakes.

2026-04-03
security

AES vs RSA Encryption: Which Should You Use?

A clear comparison of AES and RSA encryption: symmetric vs asymmetric, how each works, performance, TLS hybrid encryption, and when to use each algorithm.

2026-03-28
security

API Security Best Practices

A practical guide to API security: authentication and authorisation, rate limiting, input validation, OWASP API Security Top 10, and common vulnerabilities.

2026-03-28

Press & Reviews

press

Tools.Fun: Developer's Swiss Army Knife

SysCast reviews tools.fun — a comprehensive collection of 25+ web-based developer utilities.

2026-03-28
press

Enterprise Linux Solutions & Supporting Tools

LinuxCIO explores how tools.fun utilities complement enterprise Linux management.

2026-03-28
press

Mobile App OTA Updates: Implementation Guide

CodePush guide to implementing over-the-air mobile updates using tools.fun developer utilities.

2026-03-28