Click here to Skip to main content

The Insider News

   

The Insider News is for breaking IT and Software development news. Post your news, your alerts and your inside scoops. This is an IT news-only forum - all off-topic, non-news posts will be removed. If you wish to ask a programming question please post it here.

Get The Daily Insider direct to your mailbox every day. Subscribe now!

 
You must Sign In to use this message board.
Search this forum  
    Spacing  Noise  Layout  Per page   
NewsWhat The Rails Security Issue Means To YoustaffTerrence Dorsey31-Jan-13 11:15 
January has been a very bad month for Ruby on Rails developers, with two high-severity security bugs permitting remote code execution found in the framework and a separate-but-related compromise on rubygems.org, a community resource which virtually all Ruby on Rails developers sit downstream of. Many startups use Ruby on Rails. Other startups don’t but, like the Rails community, may one day find themselves asking What Do We Do When Apocalyptically Bad Things Happen On Our Framework of Choice? I thought I’d explain that for the general community.
Executing arbitrary code: words that should send shivers down any dev's spine.
GeneralRe: What The Rails Security Issue Means To You PinprotectorAspDotNetDev31-Jan-13 11:42 
Terrence Dorsey wrote:
Executing arbitrary code: words that should send shivers down any dev's spine

 
Oh, I don't know. I see code almost every day that I'd like to summarily execute.

GeneralRe: What The Rails Security Issue Means To You PinmemberBrisingr Aerowing31-Jan-13 13:11 
Big Grin | :-D Laugh | :laugh:
 
So do I.... Frown | :(
 
I recently saw some code that I thought should be electrocuted, have a lethal injection, and be placed in front of a firing squad all at once. Dead | X| And that was not the worst file. On a scale of 1 - 10, where 10 is the worst, that was about a 2, and the worst was about 1000.

Bob Dole
The internet is a great way to get on the net.

D'Oh! | :doh: 2.0.82.7292 SP6a

GeneralRe: What The Rails Security Issue Means To You PinmemberDan Neely1-Feb-13 2:48 
You're doing it wrong.
 
Really horrible code should be dragged into a filthy, deserted, vermin infested alley; have its legs and jaw broken; and then be shot in the gut. We can then take bets on if bloodloss, sepsis, or the rats finish it off.
Did you ever see history portrayed as an old man with a wise brow and pulseless heart, waging all things in the balance of reason?
Is not rather the genius of history like an eternal, imploring maiden, full of fire, with a burning heart and flaming soul, humanly warm and humanly beautiful?
--Zachris Topelius
 

Training a telescope on one’s own belly button will only reveal lint. You like that? You go right on staring at it. I prefer looking at galaxies.
-- Sarah Hoyt

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Rant Rant    Admin Admin   


Advertise | Privacy | Mobile
Web01 | 2.6.130619.1 | Last Updated 20 Jun 2013
Copyright © CodeProject, 1999-2013
All Rights Reserved. Terms of Use
Layout: fixed | fluid