
Linguistic Antipatterns With Jimmy Koppel - RUBY 583
Ruby Rogues
00:00
Ruby Case Studies on Security
The case studies are about messy code or code flaws in two popular Ruby programs. The Bundler one is interesting that this is kind of a story about how a real security availability happens, which is a handful of years ago. So like you have a fun little file and you say, here's my primary source down while the gems from here, but this one gem down low from place B. And actually it would give place B precedence over place A. This makes you vulnerable to what's called a supply chain attack where someone uploads to place B and library has the same name as the thing you actually want. But it doesn't do what you like.
Transcript
Play full episode