Pearson Education is running a Voices That Matter Ruby conference this fall in Boston.  The conference, from the same people who Addison-Wesley's Professional Ruby Series, will give you a chance to meet and learn from those very same authors.  Don't miss a chance to interact with so many Ruby professionals.
  
  Posted by James Edward Gray II on 09 Sep 2008
 
  
  There is a DoS vulnerability in the REXML library included in the Ruby
Standard Library. A so-called "XML entity explosion" attack technique
can be used for remotely bringing down (disabling) any application
which parses user-provided XML using REXML.
Most Rails applications will be vulnerable because Rails parses
user-provided XML using REXML by default. 
  Continue Reading…
  Posted by Shugo Maeda on 23 Aug 2008