3 ms·
The web framework that is chock-full of security blunders continues unabated. How do people persist with it? Inertia?
by whyowhyowhy 12y ago
The web framework that is chock-full of security blunders continues unabated.
How do people persist with it? Inertia?
- jtc331 12y agoActually it's probably more secure than the vast majority of frameworks. And certainly it's more secure by default than most web apps. Have you looked into how many PHP apps still suffer from obvious SQL injection attacks?
- rickdale 12y agoWell for one, its gotten a lot better and continues to get a lot better. And for two, the ruby on rails community is great. But for three: Mike Hartls beginning rails tutorial. Is there any other book like that on any other language? His book is a critical reason why I choose rails.
- erkkie 12y agoBecause usage and popularity brings more eyes including security audits?
- matthewmacleod 12y agoDoesn't seem to have notably more security issues than comparable frameworks, like Django, so I think you're probably overstating it. It remains popular because it's a pleasant and efficient build common web apps. It's not suitable for every scenario, but it hits a pretty sweet spot in most cases. I certainly keep coming back to it, regardless of the time I spend with other tools and frameworks.