Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

If you want a "secure pickle" you should corrupt it on creation so that it needs a to uncorrupted to be read. preferably with the HMAC.


No, just switch from pickle to json.


But how would you get arbitrary code execution? Pickle does solve a lot of problems, but it creates so many that I think it should be removed from the battery pack. You can't make HMAC integrity checks optional, and you make the mandatory by breaking the payload.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: