_ Login Generatorã®Session Fixation Attack対ç(2) ãããåé¿ããã«ã¯ä»¥ä¸ã®ããã«ã»ãã·ã§ã³ããªã»ãããã¦ããã°ããã [Journal InTime - CSRF対ç , Login Generatorã®Session Fixation Attack対ç , ã¯ããã¼ã®ãã¹ , ã»ãã·ã§ã³ãã¡ã¤ã«ã®ä½æå ´æããå¼ç¨] ææã§ã»ãã·ã§ã³ãã¼ã¿ã¯å¼ãç¶ãããã¨ãã話ããã£ãã®ã§ã¡ãã£ã¨æ¹è¯ã def login case @request.method when :post user = User.authenticate(@params[:user_login], @params[:user_password]) if user @session[:user] = user data = @session.instance_variable_get
{{#tags}}- {{label}}
{{/tags}}