Materials from "Gaps in the Magic: Exploiting Security Edge Cases in Rails"
Rails SQLi Workbook
|A multi-tenant Rails application that allows users to explore Active Record methods vulnerable to SQLi.||https://github.com/Meristem-Infosec/rails-sqli-workbook|
|A Rails application that mimics the account registration process of a bank. It is vulnerable to unmarshalling attacks.||https://github.com/Meristem-Infosec/MarshalBank|