If you're developing a FOSS project, be aware of cryptobros trying to PR a tea.yml into it.

db0@lemmy.dbzer0.com to Open Source@lemmy.ml – 418 points –
The disappointing tea.xyz
connortumbleson.com

Yet another "brilliant" scheme from a cryptobro. Naturally this caused a gold-rush for scammers who outsourced random people via the gig economy to open PRs for this yml file (example)

96

You are viewing a single comment

I see you get downvoted a lot. But as a norwegian that repeatedly have run into the norwegian problem when trying to use some program... i see you.

YAML 1.2 was released 15 years ago and fixed this issue. The problem is not YAML but the libraries people are using to parse it being a decade and a half out of date.