Fuzz-Testing Rails Apps with Tarantula 5.0 http://spkr8.com/t/221

Description:

Tarantula is a Rails plugin for doing easy, repeatable fuzz testing of Rails applications. Tarantula crawls your application, supplying random inputs at every turn and looking for signs of trouble. It can be used to regularly check for many kinds of error handling issues, cross-site scripting and SQL injection vulnerabilities, and more mundane things like invalid HTML. This talk will discuss how Tarantula works, how to use it, and how to make it a regular part of your testing strategy.

I'll discuss the various kinds of problems that Tarantula can help you detect. I'll explain how to install Tarantula, configure it for various kinds of testing, and how to interpret (and react to) its output. Finally, I'll discuss how to make it a regular part of your automated testing regimen.

Comments on this Talk

Stream.30878 David Medinets, 21 Feb 09:25 PM

I wonder how my own app will respond to Tarantula attacks.

Have an account? Sign in or register.

Leave a Comment

1 Rating: 5.00

Delivery: 5.00

Content: 5.00

Time & Location

February 21, 2009 — 01:30 PM
Durham, NC (Map It)