Get the latest tech news
Ruby on Rails Audit Complete
The Open Source Technology Improvement Fund is proud to share the results of our security audit of Ruby on Rails. Ruby on Rails (or “Rails”) is an open source full stack web-application framework.
The Open Source Technology Improvement Fund is proud to share the results of our security audit of Ruby on Rails. Thanks to the help of X41 D-Sec, GitLab, and the Sovereign Tech Agency, Rails can provide more secure versions of the tools needed for users to create database-backed web applications following the Model-View-Controller pattern. After they finished their initial investigation of the project via threat modelling, auditors performed manual auditing on the codebase assisted by tooling and fuzzers.
Or read this on Hacker News