BEAM There, Done That - The BEAM security wake-up call episode - Podcasts - Elixir Programming Language Forum
We just published a new episode of BEAM There, Done That that I think deserves a focused discussion here. Peter Ullrich spent an afternoon at ElixirConf EU running a $10 Claude experiment against the most-downloaded Hex packages. He found a critical vulnerability in decimal - a library used by almost every database and money-handling package in the ecosystem - in under 30 minutes, with no prior security experience. Since then he’s been systematically scanning further down the list and has repor...