Security - What rails will and won't do for you 3.95 http://spkr8.com/t/205

Description:

There are a number of areas where rails can help web application developers ensure that their applications are appropriately secured (eg, CSRF protection and encoding of output) but there are others which can never really be addressed by frameworks alone. Additionally it’s very easy when developing an application to make assumptions about what is and isn’t possible for users to do, which is something hackers tend to take advantage of. My intention would be to present this in line with the OWASP top-10 vulnerabiilities (http://www.owasp.org/index.php/Top_10_2007) which is one of the most commonly used classifications of web application flaws.

Comments on this Talk

Skyhigh mduigou, 07 Apr 06:32 PM

Really interesting. I wish we had more time for this talk.

Have an account? Sign in or register.

Leave a Comment

9 Ratings: 3.95

Delivery: 3.93

Content: 3.97

Last Five Ratings