Ruby on Rails apps vulnerable to data theft through Ransack search
A number of applications have been identified as susceptible to brute-force attacks, and there is a possibility that many more may be at risk. UPDATED Security firm Positive Security has issued a warning regarding poor integration of the Ransack library into Ruby on Rails (RoR) applications, which could allow attackers to extract sensitive information from…
