<?xml version="1.0" encoding="utf-8"?>
<feed xml:lang="en-us" xmlns="http://www.w3.org/2005/Atom"><title>Simon Willison's Weblog: ed-eliot</title><link href="http://simonwillison.net/" rel="alternate"/><link href="http://simonwillison.net/tags/ed-eliot.atom" rel="self"/><id>http://simonwillison.net/</id><updated>2008-09-03T00:14:00+00:00</updated><author><name>Simon Willison</name></author><entry><title>Django: Security fix released</title><link href="https://simonwillison.net/2008/Sep/3/django/#atom-tag" rel="alternate"/><published>2008-09-03T00:14:00+00:00</published><updated>2008-09-03T00:14:00+00:00</updated><id>https://simonwillison.net/2008/Sep/3/django/#atom-tag</id><summary type="html">
    
&lt;p&gt;&lt;strong&gt;&lt;a href="http://www.djangoproject.com/weblog/2008/sep/02/security/"&gt;Django: Security fix released&lt;/a&gt;&lt;/strong&gt;&lt;/p&gt;
The Django admin used to save partially-submitted forms if your session expired, and continue the submission when you logged in. It turns out that’s actually an unblockable CSRF exploit and is hence broken as designed, so it’s now been removed. Thanks Ed Eliot and other GCap colleagues for helping me flesh out the potential attack.


    &lt;p&gt;Tags: &lt;a href="https://simonwillison.net/tags/csrf"&gt;csrf&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/django"&gt;django&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/django-admin"&gt;django-admin&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/ed-eliot"&gt;ed-eliot&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/exploit"&gt;exploit&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/gcap"&gt;gcap&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/security"&gt;security&lt;/a&gt;&lt;/p&gt;



</summary><category term="csrf"/><category term="django"/><category term="django-admin"/><category term="ed-eliot"/><category term="exploit"/><category term="gcap"/><category term="security"/></entry><entry><title>CSS Sprite Generator</title><link href="https://simonwillison.net/2007/Sep/27/sprite/#atom-tag" rel="alternate"/><published>2007-09-27T22:59:01+00:00</published><updated>2007-09-27T22:59:01+00:00</updated><id>https://simonwillison.net/2007/Sep/27/sprite/#atom-tag</id><summary type="html">
    
&lt;p&gt;&lt;strong&gt;&lt;a href="http://spritegen.website-performance.org/"&gt;CSS Sprite Generator&lt;/a&gt;&lt;/strong&gt;&lt;/p&gt;
Upload a zip file of images and get back a CSS sprite plus a set of pre-calculated background image rules. Tool built by Ed Eliot and Stuart Colville for their forthcoming book “High Performance Web Site Techniques”.

    &lt;p&gt;&lt;small&gt;&lt;/small&gt;Via &lt;a href="http://www.ejeliot.com/blog/112"&gt;Ed Eliot&lt;/a&gt;&lt;/small&gt;&lt;/p&gt;


    &lt;p&gt;Tags: &lt;a href="https://simonwillison.net/tags/css"&gt;css&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/csssprites"&gt;csssprites&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/ed-eliot"&gt;ed-eliot&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/performance"&gt;performance&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/spritegenerator"&gt;spritegenerator&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/stuart-colville"&gt;stuart-colville&lt;/a&gt;&lt;/p&gt;



</summary><category term="css"/><category term="csssprites"/><category term="ed-eliot"/><category term="performance"/><category term="spritegenerator"/><category term="stuart-colville"/></entry><entry><title>Tips for Writing Nicer Site Badges</title><link href="https://simonwillison.net/2007/Feb/14/badges/#atom-tag" rel="alternate"/><published>2007-02-14T23:26:14+00:00</published><updated>2007-02-14T23:26:14+00:00</updated><id>https://simonwillison.net/2007/Feb/14/badges/#atom-tag</id><summary type="html">
    
&lt;p&gt;&lt;strong&gt;&lt;a href="http://www.ejeliot.com/blog/80"&gt;Tips for Writing Nicer Site Badges&lt;/a&gt;&lt;/strong&gt;&lt;/p&gt;
Ed Eliot’s putting together a much needed set of best practices for badges and widgets.


    &lt;p&gt;Tags: &lt;a href="https://simonwillison.net/tags/badges"&gt;badges&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/ed-eliot"&gt;ed-eliot&lt;/a&gt;&lt;/p&gt;



</summary><category term="badges"/><category term="ed-eliot"/></entry></feed>