LWN.net Logo

Github compromised, or not?!

Github compromised, or not?!

Posted Mar 5, 2012 21:32 UTC (Mon) by robinst (subscriber, #61173)
In reply to: Github compromised, or not?! by rfunk
Parent article: Github compromised

By the way, the default for new applications is already fixed:

https://github.com/rails/rails/commit/641a4f62405cc276542...

And existing applications can enable the configuration option and fix their models to get the secure-by-default behavior.


(Log in to post comments)

Github compromised, or not?!

Posted Mar 7, 2012 11:32 UTC (Wed) by job (guest, #670) [Link]

How could this not have been obvious from the start? The more I read about this mass assignment thing the more I am saddened by web developers. Did they learn nothing from PHP?

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds