Hacker News new | ask | show | jobs
by zurn 4452 days ago
> "Don't roll your own parsers" should really be up there with "Don't roll your own crypto".

.. and if you do, don't do it in a highly memory-unsafe language. Espcially when it's for a security critical piece of central internet infrastructure!

1 comments

How do the Ruby-YAML and Python-Pickle vulnerabilities get cataloged?