Hacker News new | ask | show | jobs
by postmodern_mod3 4886 days ago
@benmmurphy seems to be the only one who knows how to get RCE via Syck (1.8.x YAML parser). https://twitter.com/benmmurphy/status/296025302986014720