Skip to content

Instantly share code, notes, and snippets.

#!/usr/bin/env python
# Quick and dirty demonstration of CVE-2014-0160 by
# Jared Stafford (jspenguin@jspenguin.org)
# Modified so that it finds cookies
import sys
import struct
import socket
import time
import select
@danreedy
danreedy / speaker.md
Last active August 29, 2015 13:57 — forked from matiaskorhonen/speaker.md
CFP Response for Frozen Rails
class UserController < ApplicationController
def create
@user = User.create(UserInput.create(params))
end
def update
@user = User.find(params[:id].to_i)
@user.update_attributes(UserInput.update(params))
end