Martin Fowler's Blog, page 23
April 3, 2017
One Line of Code that Compromises Your Server (Part 2)

Now Jack has the session key, he moves on to
show how he can use it to gain administrative rights on the application, and further to
get a shell on the server itself. He wraps up with some advice on how to prevent
these kinds of attacks.
April 1, 2017
photostream 107
March 30, 2017
One Line of Code that Compromises Your Server

Forgive the click-bait title, but Jack Singleton really is talking about how
one line in a web-application configuration can hand the keys of a server out to an
attacker. The line of code in question sets the key for signing and encrypting
cookies. In this first installment, Jack shows how it's surprisingly easy to
crack a poorly chosen key for this purpose, which is the first step that will
lead him to a shell on the server.
March 29, 2017
Sequence the Features

Now the Lean Inception has a list of features put in the context of the user
journeys. On Thursday afternoon Paulo
leads the team to use this information to sequence these
features into several iterations of an MVP.
March 27, 2017
Display Features in Journeys

At this point in the inception we should have two pieces of insight: a list of
features that the product should have, and the display of user journeys which
indicate how users will interact with the product. With this activity
we'll unite these two perspectives. Doing this will verify both of these views by
integrating them.
March 23, 2017
Show the User Journeys

Next activity for Paulo's Lean
Inception is to explore the journeys that users follow to reach their goals.
March 22, 2017
Technical and Business Review

Up early on Wednesday, so ready for the Technical and Business
Review activity of Paulo's Lean
Inception. During the morning the team reviews the features and assess their value,
effort, and level of uncertainty.
March 21, 2017
Discover the Features

It's Tuesday afternoon, and for once the day of publication matches the day of
the week in the Paulo's Lean Inception
timetable. For this afternoon, the activity is Discover the Features. The team
uses a prioritized grid of personas and goals to consider what features should be
in the product.
March 20, 2017
Describe the Personas

To build a product, we need to understand who our users are and what they want
to achieve. So on the Tuesday morning of a Lean Inception, Paulo gives us an activity to describe the personas
of our users.
March 17, 2017
photostream 106
Martin Fowler's Blog
- Martin Fowler's profile
- 1099 followers
