This blog post serves as a wrap up of some aspect of the presentation I gave at ZeroNights 2012 . Ruby on Rails (RoR) is atm my favorite piece of software to hunt bugs at. After quite some time spending on looking at Rails apps I figured that I oversaw the most easy way to attack an (...