User contributions for Ghuang2
Jump to navigation
Jump to search
18 September 2013
- 17:5917:59, 18 September 2013 diff hist +35 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Failure to Preserve SQL Query Structure (CWE-89)' (aka 'SQL Injection')
- 17:1817:18, 18 September 2013 diff hist −96 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Comparison to other platforms
- 17:1417:14, 18 September 2013 diff hist +14 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Ruby and Rails security
- 17:1317:13, 18 September 2013 diff hist +6 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Improper Access Control (Authorization)
- 17:1317:13, 18 September 2013 diff hist +14 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Hard-Coded Password (CWE-259)
- 17:1117:11, 18 September 2013 diff hist +8 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Error Message Information Leak (CWE-209)
- 17:1117:11, 18 September 2013 diff hist +16 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Cross-Site Request Forgery '(CSRF)' (CWE-352)
- 17:1017:10, 18 September 2013 diff hist +8 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Failure to Preserve OS Command Structure (CWE-78)' (aka 'OS Command Injection')
- 17:1017:10, 18 September 2013 diff hist +14 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Failure to Preserve Web Page Structure (CWE-79)' (aka 'Cross-site Scripting(XSS)')
- 17:0917:09, 18 September 2013 diff hist +8 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Failure to Preserve SQL Query Structure (CWE-89)' (aka 'SQL Injection')
- 17:0817:08, 18 September 2013 diff hist +8 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Improper Encoding or Escaping of Output (CWE-116)
- 17:0817:08, 18 September 2013 diff hist +8 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Improper Input Validation (CWE-20)
- 17:0717:07, 18 September 2013 diff hist +9 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Improper Input Validation (CWE-20)
- 17:0717:07, 18 September 2013 diff hist −13 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Tools and gems
- 17:0517:05, 18 September 2013 diff hist −4 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Tools and gems
- 17:0517:05, 18 September 2013 diff hist +158 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Tools and gems
17 September 2013
- 21:0721:07, 17 September 2013 diff hist +109 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Execution with Unnecessary Privileges (CWE-250)
- 21:0421:04, 17 September 2013 diff hist +1,743 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Porous Defenses
- 21:0221:02, 17 September 2013 diff hist +737 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Use of Insufficiently Random Values (CWE-330)
- 21:0121:01, 17 September 2013 diff hist +656 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Use of a Broken or Risky Cryptographic Algorithm (CWE-327)
- 20:5820:58, 17 September 2013 diff hist +579 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Porous Defenses
- 20:5820:58, 17 September 2013 diff hist +502 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Incorrect Calculation CWE-682)
- 20:5620:56, 17 September 2013 diff hist +608 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Improper Initialization (CWE-665)
- 20:5220:52, 17 September 2013 diff hist +27 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Improper Resource Shutdown or Release (CWE-404)
- 20:5120:51, 17 September 2013 diff hist +461 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Improper Resource Shutdown or Release (CWE-404)
- 20:4320:43, 17 September 2013 diff hist +571 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Download of Code Without Integrity Check (CWE-494)
- 20:4120:41, 17 September 2013 diff hist 0 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Failure to Control Generation of Code (aka 'Code Injection') (CWE-94)
- 20:4020:40, 17 September 2013 diff hist +12 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Failure to Control Generation of Code (aka 'Code Injection') (CWE-94)
- 20:3720:37, 17 September 2013 diff hist +1,371 CSC/ECE 517 Fall 2013/ch1 1w20 gq →External Control of File Name or Path (CWE-73)
- 20:3420:34, 17 September 2013 diff hist +275 CSC/ECE 517 Fall 2013/ch1 1w20 gq →External Control of Critical State Data (CWE-642)
- 20:3320:33, 17 September 2013 diff hist +504 CSC/ECE 517 Fall 2013/ch1 1w20 gq →External Control of Critical State Data (CWE-642)
- 20:2920:29, 17 September 2013 diff hist +532 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Risky Resource Management
- 20:2520:25, 17 September 2013 diff hist +15 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Insecure Interaction Between Components
- 20:2320:23, 17 September 2013 diff hist +111 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Error Message Information Leak (CWE-209)
- 20:2220:22, 17 September 2013 diff hist +92 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Race Condition (CWE-362)
- 20:1920:19, 17 September 2013 diff hist +1,507 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Cross-Site Request Forgery '(CSRF)' (CWE-352)
- 20:1120:11, 17 September 2013 diff hist +33 N File:Csrf.png Cross-Site Request Forgery (CSRF) current
- 20:0620:06, 17 September 2013 diff hist +12 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Cleartext Transmission of Sensitive Information (CWE-319)
- 20:0420:04, 17 September 2013 diff hist +4 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Failure to Preserve OS Command Structure (CWE-78)' (aka 'OS Command Injection')
- 20:0320:03, 17 September 2013 diff hist +392 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Failure to Preserve OS Command Structure (CWE-78)' (aka 'OS Command Injection')
- 20:0120:01, 17 September 2013 diff hist +712 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Failure to Preserve Web Page Structure (CWE-79)' (aka 'Cross-site Scripting(XSS)')
- 19:5219:52, 17 September 2013 diff hist −12 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Failure to Preserve SQL Query Structure (CWE-89)' (aka 'SQL Injection')
- 19:4819:48, 17 September 2013 diff hist +1,113 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Improper Input Validation (CWE-20)
- 02:3002:30, 17 September 2013 diff hist +1,073 CSC/ECE 517 Fall 2013/ch1 1w20 gq →Appendix
- 02:1402:14, 17 September 2013 diff hist +41,278 CSC/ECE 517 Fall 2013/ch1 1w20 gq Updated common errors and fixes, as well as comparison with other frameworks like Jave and C++
- 01:2101:21, 17 September 2013 diff hist +5 m CSC/ECE 517 Fall 2013/ch1 1w20 gq No edit summary
- 01:0301:03, 17 September 2013 diff hist +45 m CSC/ECE 517 Fall 2013/ch1 1w20 gq →Background
- 00:5600:56, 17 September 2013 diff hist +1,219 CSC/ECE 517 Fall 2013/ch1 1w20 gq Background done
- 00:2000:20, 17 September 2013 diff hist +570 Nm CSC/ECE 517 Fall 2013/ch1 1w20 gq Created page with "How to make a Rails application secure This page discusses how security can be provided in web development, focusing on security features provided by Rails. List measures that sh..."
16 September 2013
- 19:5919:59, 16 September 2013 diff hist +42 CSC/ECE 517 Fall 2013 No edit summary