Get the latest tech news

Ruby on Rails Audit Complete


The Open Source Technology Improvement Fund is proud to share the results of our security audit of Ruby on Rails. Ruby on Rails (or “Rails”) is an open source full stack web-application framework.

The Open Source Technology Improvement Fund is proud to share the results of our security audit of Ruby on Rails. Thanks to the help of X41 D-Sec, GitLab, and the Sovereign Tech Agency, Rails can provide more secure versions of the tools needed for users to create database-backed web applications following the Model-View-Controller pattern. After they finished their initial investigation of the project via threat modelling, auditors performed manual auditing on the codebase assisted by tooling and fuzzers.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of ruby

ruby

Photo of Rails Audit Complete

Rails Audit Complete

Related news:

News photo

Build a minimal decorator with Ruby in 30 minutes

News photo

Unlocking Ractors: class instance variables in Ruby

News photo

What Is the Difference Between a Block, a Proc, and a Lambda in Ruby? (2013)