Martin Fowler's Blog, page 23

April 3, 2017

One Line of Code that Compromises Your Server (Part 2)



Now Jack has the session key, he moves on to
show how he can use it to gain administrative rights on the application, and further to
get a shell on the server itself. He wraps up with some advice on how to prevent
these kinds of attacks.



more…

 •  0 comments  •  flag
Share on Twitter
Published on April 03, 2017 06:11

April 1, 2017

photostream 107





Lake Matheson, New Zealand

 •  0 comments  •  flag
Share on Twitter
Published on April 01, 2017 07:45

March 30, 2017

One Line of Code that Compromises Your Server



Forgive the click-bait title, but Jack Singleton really is talking about how
one line in a web-application configuration can hand the keys of a server out to an
attacker. The line of code in question sets the key for signing and encrypting
cookies. In this first installment, Jack shows how it's surprisingly easy to
crack a poorly chosen key
for this purpose, which is the first step that will
lead him to a shell on the server.



more…

 •  0 comments  •  flag
Share on Twitter
Published on March 30, 2017 06:22

March 29, 2017

Sequence the Features



Now the Lean Inception has a list of features put in the context of the user
journeys. On Thursday afternoon Paulo
leads the team to use this information to sequence these
features
into several iterations of an MVP.



more…

1 like ·   •  0 comments  •  flag
Share on Twitter
Published on March 29, 2017 06:30

March 27, 2017

Display Features in Journeys



At this point in the inception we should have two pieces of insight: a list of
features that the product should have, and the display of user journeys which
indicate how users will interact with the product. With this activity
we'll unite these two perspectives. Doing this will verify both of these views by
integrating them.



more…

 •  0 comments  •  flag
Share on Twitter
Published on March 27, 2017 12:04

March 23, 2017

Show the User Journeys



Next activity for Paulo's Lean
Inception is to explore the journeys that users follow to reach their goals.



more…

 •  0 comments  •  flag
Share on Twitter
Published on March 23, 2017 12:55

March 22, 2017

Technical and Business Review



Up early on Wednesday, so ready for the Technical and Business
Review
activity of Paulo's Lean
Inception. During the morning the team reviews the features and assess their value,
effort, and level of uncertainty.



more…

 •  0 comments  •  flag
Share on Twitter
Published on March 22, 2017 04:56

March 21, 2017

Discover the Features



It's Tuesday afternoon, and for once the day of publication matches the day of
the week in the Paulo's Lean Inception
timetable. For this afternoon, the activity is Discover the Features. The team
uses a prioritized grid of personas and goals to consider what features should be
in the product.



more…

 •  0 comments  •  flag
Share on Twitter
Published on March 21, 2017 12:38

March 20, 2017

Describe the Personas



To build a product, we need to understand who our users are and what they want
to achieve. So on the Tuesday morning of a Lean Inception, Paulo gives us an activity to describe the personas
of our users
.



more…

 •  0 comments  •  flag
Share on Twitter
Published on March 20, 2017 06:58

March 17, 2017

photostream 106





Roy's Peak, Wanaka, New Zealand

 •  0 comments  •  flag
Share on Twitter
Published on March 17, 2017 18:34

Martin Fowler's Blog

Martin Fowler
Martin Fowler isn't a Goodreads Author (yet), but they do have a blog, so here are some recent posts imported from their feed.
Follow Martin Fowler's blog with rss.