Ruby Rogues

Server-Side Request Forgery with Greg Molnar - RUBY 591


Listen Later

Greg Molnar is a Ruby Developer and OSCP Penetration Tester. He joins the Rogues to talk about Server-Side Request Forgery in Rails. He begins by explaining what Server-Side Request Forgery is and its significance. They also discuss the state of security in Rails and provide their views on the best ways to secure your applications.
Sponsors
  • Chuck's Resume Template
  • Raygun - Application Monitoring For Web & Mobile Apps
  • Become a Top 1% Dev with a Top End Devs Membership

Links
  • Server-Side Request Forgery in Rails
  • GitLab fixes serious SSRF flaw that exposed orgs’ internal servers | The Daily Swig
  • GitHub - rubysec/bundler-audit: Patch-level verification for Bundler
  • GitHub - presidentbeef/brakeman: A static analysis security vulnerability scanner for Ruby on Rails applications
  • Spektr
  •  Heartbleed - Wikipedia
  • xkcd: Dependency
  • Ghost In The Wires by Kevin Mitnick | Mitnick Security
  • Rails SQL Injection examples 
  • Securing Rails Applications — Ruby on Rails Guides
  •  Burp Suite - Application Security Testing Software - PortSwigger
  • Deploying with MRSK | Drifting Ruby

Promoted Links
  • This Week in Rails
  • The Rails Changelog
  • Blob and File APIs
  • DocsGPT and adopting OpenAI’s Chat Completions API

Socials
  • Greg Molnar
  • GitHub: gregmolnar
  • Twitter: @GregMolnar

Picks
  • Charles - The Crew
  • Dave - MM11 Pro Switchable Mic Mute/Talk Professional Microphone Switch | Rolls Corporation - Real Sound
  • Valentino - OpenAI’s new model – GPT-4 – GPT-4
  • Valentino - This person gives GPT-4 $100 to see how much money it can make – https://twitter.com/jacksonfall/status/1636107218859745286


Advertising Inquiries: https://redcircle.com/brands

Privacy & Opt-Out: https://redcircle.com/privacy

Become a supporter of this podcast: https://www.spreaker.com/podcast/ruby-rogues--6102073/support.
...more
View all episodesView all episodes
Download on the App Store

Ruby RoguesBy Charles M Wood

  • 3.4
  • 3.4
  • 3.4
  • 3.4
  • 3.4

3.4

21 ratings


More shows like Ruby Rogues

View all
MacBreak Weekly (Audio) by TWiT

MacBreak Weekly (Audio)

2,006 Listeners

The Changelog: Software Development, Open Source by Changelog Media

The Changelog: Software Development, Open Source

285 Listeners

JavaScript Jabber by Charles M Wood

JavaScript Jabber

232 Listeners

Accidental Tech Podcast by Marco Arment, Casey Liss, John Siracusa

Accidental Tech Podcast

2,096 Listeners

iPhreaks by Charles M Wood

iPhreaks

17 Listeners

Ruby Rogues by Charles M Wood

Ruby Rogues

45 Listeners

The Freelancers' Show by Charles M Wood

The Freelancers' Show

23 Listeners

The Ruby on Rails Podcast by Elise Shaffer

The Ruby on Rails Podcast

53 Listeners

Adventures in Angular by Charles M Wood

Adventures in Angular

33 Listeners

The Bike Shed by thoughtbot

The Bike Shed

121 Listeners

Software Engineering Daily by Software Engineering Daily

Software Engineering Daily

629 Listeners

React Native Radio by Jamon Holmgren, Robin Heinze, Mazen Chami

React Native Radio

57 Listeners

Soft Skills Engineering by Jamison Dance and Dave Smith

Soft Skills Engineering

271 Listeners

My JavaScript Story by Charles M Wood

My JavaScript Story

4 Listeners

JavaScript Jabber by Charles M Wood

JavaScript Jabber

61 Listeners

Adventures in Angular by Charles M Wood

Adventures in Angular

15 Listeners

Syntax - Tasty Web Development Treats by Wes Bos & Scott Tolinski - Full Stack JavaScript Web Developers

Syntax - Tasty Web Development Treats

986 Listeners

REWORK by 37signals

REWORK

212 Listeners

CoRecursive: Coding Stories by Adam Gordon Bell - Software Developer

CoRecursive: Coding Stories

185 Listeners

Remote Ruby by Chris Oliver, Andrew Mason

Remote Ruby

34 Listeners

The Stack Overflow Podcast by The Stack Overflow Podcast

The Stack Overflow Podcast

63 Listeners

IndieRails by Jess Brown & Jeremy Smith

IndieRails

5 Listeners

Latent Space: The AI Engineer Podcast by swyx + Alessio

Latent Space: The AI Engineer Podcast

64 Listeners

The Rails Changelog by Emmanuel Hayford

The Rails Changelog

5 Listeners