rubyonrails-talk
August 27th, 2006, 06:51 PM
secure-action-plugin provides an easy to use interface for protecting
your app against assumed logged in attacks.
In an assumed logged in attack, a malicious site assumes the visitor is
logged into your site. The malicious site manually crafts a URL to a
destructive action on your site (change email, delete account, etc) and
More... (http://groups.google.com/group/rubyonrails-talk/msg/d54e70634430ea50)
your app against assumed logged in attacks.
In an assumed logged in attack, a malicious site assumes the visitor is
logged into your site. The malicious site manually crafts a URL to a
destructive action on your site (change email, delete account, etc) and
More... (http://groups.google.com/group/rubyonrails-talk/msg/d54e70634430ea50)