Security by Stupidity I: Rails and attr_accesible

Sometimes you get surprised how frameworks and/or applications messes things up when trying to deal with security. Here is one example. Context Framework: Rails Stupidity: attraccesible/attrprotected Output: Annoyed developers and/or missing data. Explanation…