Sure. I’ll send it to the San Diego list as well, since some of them were at the meeting last night.

 

Hacme Casino, for those of you who weren’t at the OC meeting last night, is a Ruby on Rails application with “baked-in” security issues. It is meant to be a teaching and demonstration tool. I have been working on it for the past few months, during my off time. It is released through my company (we do security consulting), Foundstone, Inc.

 

The installer is located here:

http://www.foundstone.com/resources/proddesc/hacmecasino.htm

 

The source code is located in cvs, with instructions here (if it’s too much of a pain, I can email it to you):

http://sourceforge.net/cvs/?group_id=143089

 

A couple of side notes:

 

1)       I started using Ruby about four months ago, and realize that the code for this application is probably not the most elegant thing in the world. I would owe a beer to whoever would be kind enough to have an in-person or teleconference peer code review!

2)       That being said, I did an informal comparison of lines of code of three of our free tools projects:  Hacme Casino (Ruby on Rails), Hacme Bank (ASP.NET), and Hacme Books (Java).

Hacme Books – 9000 LOC

Hacme Bank – 8000 LOC

Hacme Casino – 1500 LOC/2000 LOC with tests

           

Not that the results were that surprising, but pretty cool indeed!

 

Anyways, please feel free to send me any comments, questions, or suggestions.

 

Thanks,

Alex (alex d0t smolen at foundstone d0t com)

 


From: Scott Hodson [mailto:[EMAIL PROTECTED]
Sent: Friday, August 25, 2006 1:59 PM
To: [EMAIL PROTECTED]
Cc: 'Alex'
Subject: Hacme Casino

 

Alex, for those that didn't make it last night, could you email the group more about your project and where to go to get involved?  Thanks.

 

 

 

_______________________________________________
Sdruby mailing list
[email protected]
http://lists.sdruby.com/mailman/listinfo/sdruby

Reply via email to