About
Blog
Uses
Search
Posts tagged with security.
All of my long-form thoughts on security.
Rails CVE-2025-55193 and CVE-2025-24293
19 Aug 2025
Read article
19 Aug 2025
Exploiting LLM chatbots
16 Jun 2025
Read article
16 Jun 2025
Exploiting LLM tools
16 Mar 2025
Read article
16 Mar 2025
Validating password strength
15 Mar 2025
Read article
15 Mar 2025
The state of Security in Rails 8
13 Feb 2025
Read article
13 Feb 2025
The dangers of single line regular expressions
19 Apr 2024
Read article
19 Apr 2024
The tale of an XSS in Phlex (CVE-2024-32463)
17 Apr 2024
Read article
17 Apr 2024
Secure code review checklist
26 Mar 2024
Read article
26 Mar 2024
Brute-forcing 2FA with Ruby
23 Mar 2024
Read article
23 Mar 2024
Securing a VPS
06 Feb 2024
Read article
06 Feb 2024
The 3 pillars of AAA
29 Jan 2024
Read article
29 Jan 2024
Penetration testing for PCI DSS compliance
17 Jan 2024
Read article
17 Jan 2024
Open redirect vulnerabilities in Rails apps
14 Nov 2023
Read article
14 Nov 2023
Rails Authentication for Compliance
25 Oct 2023
Read article
25 Oct 2023
Throttling Rails logins with Rack Attack
05 Sep 2023
Read article
05 Sep 2023
Automate some of your security - Rails Tricks Issue 13
03 Jul 2023
Read article
03 Jul 2023
Server-Side Request Forgery in Rails
18 Jan 2023
Read article
18 Jan 2023
6 security improvements in Rails 7
09 May 2022
Read article
09 May 2022
rubygems CVE-2022-29176 explained
06 May 2022
Read article
06 May 2022
console1984 bypass
27 Aug 2021
Read article
27 Aug 2021
Orcus Walkthrough
15 May 2017
Read article
15 May 2017