TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Ruby On Rails Security Guide

26 点作者 b-man将近 15 年前

4 条评论

Groxx将近 15 年前
A very nice list. Readable, explanatory, and <i>full</i> of good suggestions. Almost all focused on session / injection / xss attacks, but that's probably the biggest threat you've got. I wish I'd seen it sooner; <i>most</i> I've seen before, but the regex one in particular was new to me, and it really only takes <i>one</i>, doesn't it?<p>Anyone know of anything notable they missed? I'd love to know, and it could be useful to get it added to the list too.
greenlblue将近 15 年前
The regular expression surprised me. I'm really used to using ^$ in php and it works as intended but apparently in Ruby the correct delimiters are \A\z.
评论 #1556640 未加载
davcro将近 15 年前
One of my rails apps was hijacked via xss injection last week. I wish I had read this guide sooner. I highly recommend for any rails admin.
jim_h将近 15 年前
Thanks. I've read this before, but it's always good to reread it.