Simon Willison’s Weblog

Subscribe
Atom feed for edeliot

3 items tagged “edeliot”

2008

Django: Security fix released. The Django admin used to save partially-submitted forms if your session expired, and continue the submission when you logged in. It turns out that’s actually an unblockable CSRF exploit and is hence broken as designed, so it’s now been removed. Thanks Ed Eliot and other GCap colleagues for helping me flesh out the potential attack.

# 3rd September 2008, 12:14 am / csrf, django, security, exploit, edeliot, gcap

2007

CSS Sprite Generator (via) Upload a zip file of images and get back a CSS sprite plus a set of pre-calculated background image rules. Tool built by Ed Eliot and Stuart Colville for their forthcoming book “High Performance Web Site Techniques”.

# 27th September 2007, 10:59 pm / edeliot, csssprites, css, performance, spritegenerator, stuart-colville

Tips for Writing Nicer Site Badges. Ed Eliot’s putting together a much needed set of best practices for badges and widgets.

# 14th February 2007, 11:26 pm / edeliot, badges