Skip to content
Ruby on Rails Security Project

Hand-picked Rails security resources

Menu

  • Home
  • New here?
    • About
    • Rails security for beginners
    • Advanced Rails security
    • Essential Rails security links
  • Topics
    • Cross-Site Scripting (XSS) in Rails
    • SQL Injection in Rails
    • Rails configuration security
    • Rails security books
    • Vulnerabilities and threats
    • Cross-Site Request Forgery (CSRF)
    • All resources
  • Feed

Rails and web security reading list ?  #24

Filed under Updates

New Rails 5.1 came out recently

It includes encrypted secrets and supports JS package mangers for easier updates. That’s important too because of JS vulnerabilities.


New version for authorization framework CanCanCan


Check and update your SSH keys with this easy command


Which security implications of the Serverless approach are better or worse?


And another post about serverless security issues


Replacing Disqus with Github Comments for less load time and far less tracking


Don’t repeat these 2FA design mistakes


Another Rails security checklist with a few bits


CloudFlare introduced TLS client-side authorization


Check your nginx config for security issues


Security Updates

PostgreSQL security update

if you found this useful, please share it:

  • Click to share on Twitter (Opens in new window)
  • Click to share on Facebook (Opens in new window)
  • Click to share on Reddit (Opens in new window)
  • Click to email a link to a friend (Opens in new window)

Written by Updates

Sponsored By

Ruby on Rails security strategy guideThe complete Rails guide to developing a security strategy for busy lead architects. Limited free offer.

Meta

Rails Security Bi-Weekly
Search
Update Feed
Resources Feed
Suggest a resource

About

Hand-picked quality Rails security resources © 2006-today by bauland42 (relaunch in 2015)
About