The Bike Shed

On The Bike Shed, hosts Joël Quenneville and Stephanie Minn discuss development experiences and challenges at thoughtbot with Ruby, Rails, JavaScript, and whatever else is drawing their attention, admiration, or ire this week.

https://bikeshed.thoughtbot.com

subscribe
share






81: Is This Really a CVE?


Derek and Sean talk through how to handle a security vulnerability that was reported for Clearance, a user authentication library.

  • Cardboard Jankowski
  • Prevent password reset token leak via HTTP referer
  • The Meta Referrer Tag
  • CVE
  • Bundler Audit
  • Ruby Advisory Database
  • Ruby security announcement mailing list
  • Destroy All Software

Support The Bike Shed


fyyd: Podcast Search Engine
share








 September 28, 2016  27m