[Rails] Re: safe html links

Jeff Jones rurounijones at hotmail.com
Wed Mar 1 14:51:39 GMT 2006


Charlie Bowman wrote:
> I'm also very curious about this question.
> 
> On Tue, 2006-02-28 at 21:05 -0600, Josh Rickard wrote:
> 
>> Rails at lists.rubyonrails.org
>> http://lists.rubyonrails.org/mailman/listinfo/rails
> 
> Charlie Bowman
> http://www.recentrambles.com

Just with experience with Phishing I would disallow the use of "@" 
characters in URLs since they are usually used in user/password on 
website tricks like

http://www.ebay.com:blahblah@hackerswebsite.com

Probably wouldn't be as effective as a phishing method on a website but 
you never know.

-- 
Posted via http://www.ruby-forum.com/.


More information about the Rails mailing list