Can Phoenix Safely Use the Zip Module?
Elixir has a built-in Zip library that comes with OTP. This post explores how to use the zip module and asks the important question: “Is this safe to use with user provided zips?” We explore two different types of zip-based attacks and see what we learn from it.
https://fly.io/phoenix-files/can-phoenix-safely-use-the-zip-module/
Read next Sean Moriarity, Building a Conversational Support Bot with Elixir and Bumblebee