amuck-landowner

Django and Ruby on Rails security issue

peterw

New Member

marlencrabapple

New Member
Cookies? Couldn't this be easily avoided if you just used some sort of hash of the users IP to check if the cookie is legit? Seems simple enough.
 

MartinD

Retired Staff
Verified Provider
Retired Staff
Not really up to them to implement it though - that's up to the developer using RoR/Django.
 

marlencrabapple

New Member
Not really up to them to implement it though - that's up to the developer using RoR/Django.
After reading into it a bit it looks like they were using a function built into RoR and Django that should've done all of it on its own. Isn't that the entire point of a framework? They're supposed to do things the right way so you don't have to try your hand and screw it all up.
 

wlanboy

Content Contributer
Isn't that the entire point of a framework?


They're supposed to do things the right way so you don't have to try your hand and screw it all up.
Yup that's correct.

If you have to do everything on your own you are not using a "framework".
 
Top
amuck-landowner